CVE Database
/

CVE-2025-32915

Back to search

CVE-2025-32915

Published: May 22, 2025

Modified: May 22, 2025

PUBLISHED

Description

Packages downloaded by Checkmk's automatic agent updates on Linux and Solaris have incorrect permissions in Checkmk < 2.4.0p1, < 2.3.0p32, < 2.2.0p42 and <= 2.1.0p49 (EOL). This allows a local attacker to read sensitive data.

VendorProductVersions

Checkmk GmbH

Checkmk

affected
2.4.0 - < 2.4.0p1
affected
2.3.0 - < 2.3.0p32
affected
2.2.0 - < 2.2.0p42
affected
2.1.0

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now