CVE Database
/

CVE-2025-58122

Back to search

CVE-2025-58122

Published: Nov 18, 2025

Modified: Nov 18, 2025

PUBLISHED

Description

Insufficient permission validation in Checkmk 2.4.0 before version 2.4.0p16 allows low-privileged users to modify notification parameters via the REST API, which could lead to unauthorized actions or information disclosure.

VendorProductVersions

Checkmk GmbH

Checkmk

affected
2.4.0 - < 2.4.0p16

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now