Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-28831


Stored XSS in some confirmation pop-ups in Checkmk before versions 2.3.0p7 and 2.2.0p28 allows Checkmk users to execute arbitrary scripts by injecting HTML elements into some user input fields that are shown in a confirmation pop-up.


Published

2024-06-25T12:15:09.490

Last Modified

2024-12-04T16:26:19.433

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.4 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-80
  • Type: Primary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application checkmk checkmk ≤ 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.2.0 Yes
Application checkmk checkmk 2.3.0 Yes
Application checkmk checkmk 2.3.0 Yes
Application checkmk checkmk 2.3.0 Yes
Application checkmk checkmk 2.3.0 Yes
Application checkmk checkmk 2.3.0 Yes
Application checkmk checkmk 2.3.0 Yes
Application checkmk checkmk 2.3.0 Yes
Application checkmk checkmk 2.3.0 Yes
Application checkmk checkmk 2.3.0 Yes
Application checkmk checkmk 2.3.0 Yes
Application checkmk checkmk 2.3.0 Yes
Application checkmk checkmk 2.3.0 Yes
Application checkmk checkmk 2.3.0 Yes

References