← voltar
CVE-2022-46302

Remote Code Execution with Root Privileges via Broad Apache Permissions

CVSS 8.8 HIGHEPSS 0.4%CWE-829
Broad access controls could allow site users to directly interact with the system Apache installation when providing the reverse proxy configurations for Tribe29's Checkmk <= 2.1.0p6, Checkmk <= 2.0.0p27, and all versions of Checkmk 1.6.0 (EOL) allowing an attacker to perform remote code execution with root privileges on the underlying host.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Produtos afetados
Tribe29 · Checkmk

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →