Show plain JSON{"id": "CVE-2024-0638", "cveTags": [], "metrics": {"cvssMetricV31": [{"type": "Secondary", "source": "security@checkmk.com", "cvssData": {"scope": "CHANGED", "version": "3.1", "baseScore": 8.2, "attackVector": "LOCAL", "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H", "integrityImpact": "HIGH", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "HIGH", "confidentialityImpact": "HIGH"}, "impactScore": 6.0, "exploitabilityScore": 1.5}, {"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 6.7, "attackVector": "LOCAL", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H", "integrityImpact": "HIGH", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "HIGH", "confidentialityImpact": "HIGH"}, "impactScore": 5.9, "exploitabilityScore": 0.8}]}, "published": "2024-03-22T11:15:46.183", "references": [{"url": "https://checkmk.com/werk/16232", "tags": ["Vendor Advisory"], "source": "security@checkmk.com"}, {"url": "https://checkmk.com/werk/16232", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Analyzed", "weaknesses": [{"type": "Secondary", "source": "security@checkmk.com", "description": [{"lang": "en", "value": "CWE-272"}]}, {"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "NVD-CWE-Other"}]}], "descriptions": [{"lang": "en", "value": "Least privilege violation in the Checkmk agent plugins mk_oracle, mk_oracle.ps1, and mk_oracle_crs before Checkmk 2.3.0b4 (beta), 2.2.0p24, 2.1.0p41 and 2.0.0 (EOL) allows local users to escalate privileges."}, {"lang": "es", "value": "La violaci\u00f3n m\u00ednima de privilegios en los complementos del agente Checkmk mk_oracle, mk_oracle.ps1 y mk_oracle_crs antes de Checkmk 2.3.0b4 (beta), 2.2.0p24, 2.1.0p41 y 2.0.0 (EOL) permite a los usuarios locales escalar privilegios."}], "lastModified": "2024-12-04T17:00:07.247", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:checkmk:checkmk:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C59985CE-68DF-433D-87BD-97EDCA81E039", "versionEndIncluding": "2.0.0"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1AE224D8-742B-4D1F-ABBE-3DDA3EA5C5AD"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:b1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1E6FCE7B-7ECE-42A4-82C5-12A647B0CCC8"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:b2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "923AA113-D5E7-4F78-88BA-B72EF250F3EA"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:b3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B1984F57-A313-48AC-B8F9-F352D82824D6"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:b4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A38DB527-72A6-40B8-B46F-B8E78BFFDB1F"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:b5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "67643E11-91A1-4580-BC4C-574074C862CB"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:b6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "350B7E0F-D234-4D7C-91E4-F35E73579A24"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:b7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DE58ACA9-8078-46A7-8487-C06E4E38F372"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:b8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B3D8CF4D-E1F8-4D8D-A8A9-1783CAC869E4"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:b9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "58B0B051-7D3C-4EC7-96B0-38A1CC108D61"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B783A741-AAF2-43EE-8272-9239133A01E8"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p10:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A5F275A3-A99E-40E1-BD77-694FA568541F"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p11:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3A44BF1A-5BE0-4412-B51D-055445758B61"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p12:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A31BAE94-9096-4320-AC19-AA204E8EC08D"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p13:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1B0784EA-98E8-4490-B97B-894F188A223D"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p14:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A56A901F-1040-4DB9-9BE3-FE1999C514CA"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p15:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "58A904FC-C015-469D-8502-E678D5FDBD06"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p16:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1B5D109C-60AA-4FA4-9B10-2191AAF109F2"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p17:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "37297866-24BB-4044-8744-EC0A8C29F152"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p18:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F9D4A171-CCB3-43B8-8B70-78610423E7C0"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p19:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5E1145FF-426D-407C-9F4B-EF773BD191EC"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4DA8F776-A724-48FC-B7EF-13788BC69753"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p20:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "46F42A22-99F2-4DF5-9B00-3123396F87AC"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p21:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1C59D4D3-D526-4E6B-B3AA-FE485D030190"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p22:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65E5CAE6-DC8B-47B3-84A0-D79B0C33EB45"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p23:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8B9E0D89-79E2-476A-8A3E-8443316BC310"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p24:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "38EA0591-C30B-4102-8A06-1B922FD3A0C7"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p25:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5E9AF0D3-8DD6-4EC7-BB33-54401D4025FC"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p26:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "983604CC-DD2C-42A9-8B9D-A9A261CE8BA6"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p27:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "224960F7-695C-415B-B991-E8C01859AA80"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p28:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1F6D86E4-738B-4ADA-858E-C12CCED9FAAA"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p29:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BD8EBF09-9B70-4972-85B1-82F41488BE3F"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "076463AA-195F-4CD6-861B-72FE1C8A407F"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p30:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "009D2C7B-39B8-400F-80A5-06D56319232C"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p31:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3D5AEB8D-772E-401F-975C-61BDD30B481E"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p32:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2ECAB6C5-518C-4CA4-8B2B-D51115612A8B"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p33:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FECC252C-02AA-41EC-BB84-5C1A6BC0FB8A"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p34:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "238324F5-7225-40DD-82E8-52F30F0D3776"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p35:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4F3C9510-BD43-4F67-9C30-4F82B5D230E8"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p36:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "51941654-F6FF-4323-AECA-5D1D84308CD2"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p37:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6E800133-1D28-41D1-8D73-9437D741F83B"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p38:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8A34B28B-2BD9-4F28-9428-8CF7FCEAD7C3"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p39:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D3FC491E-DE27-4C8F-B699-DB5260935D51"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "63043834-98E5-47C2-91F1-41B98270ABCA"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p40:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0BE2C8FE-20CC-4B7E-B27B-54C873DC7530"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FCF745D0-2EA6-4414-90BC-99D3ED08BB01"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4823087F-D7FA-4594-8FD3-412DE5EA1F02"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6429F9CE-D477-4CFF-B6E0-4BF11B61ED0E"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A50C58F9-94ED-4D85-8331-2D81F8E0760A"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.1.0:p9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9A6AC0BD-FB65-4FAA-B344-66F87F16F8B3"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C66704F1-0B5E-4B43-8748-987022F378F8"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:b1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B068974F-6F67-4CBB-B567-FCED86E28F22"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:b2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EA70F36A-EEF6-48DC-B15E-055D0DE8A052"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:b3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B2017F38-38DB-4E96-B34F-160BC731CBBE"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:b4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0949F399-371B-409C-AF9F-32690D881440"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:b5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "42E1E31A-B5CC-45F2-A2E5-3EEF735499BA"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:b6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4B364FCA-500C-458E-B997-82CD0B1D24F9"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:b7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0B32E657-917B-482B-B6A4-3D3746992A4F"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:b8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2119C732-E024-4DA6-8E47-9E08E5E12602"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:i1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4F0B99A8-A124-43BD-B8AA-EECC9112346F"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3FB7221E-BE9F-4529-8E07-8AD547FA3208"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p10:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "30A074AD-9499-46E3-AB67-D6CEE3AA01C3"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p11:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A8BD0240-A22B-4273-BD47-C35A8C12E127"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p12:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DAA5680F-1DD0-48AA-BB7F-15B27365F0FA"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p13:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BC2F31CA-D4EB-44E6-9A09-5255D33F4A88"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p14:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CD80BD69-20C6-4E17-B165-98689179A5A1"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p15:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B044D43B-0233-4A0D-A356-B9F9324E2777"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p16:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7DE79896-EBE5-42F2-A126-2A871BBA1071"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p17:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "51A44E69-EEA1-4B01-B7B3-5BF7B39819E3"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p18:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BCB65AEB-CF52-410B-92B1-2DCFB914FFA4"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p19:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B7E17FA6-9011-489C-9FA9-368CA2D86FAE"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7BCEB6FF-668F-4313-9264-0BF021AFC45F"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p20:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F8B27218-A4FF-47BE-B578-6DB704478921"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p21:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8735357F-16A7-4408-9DDD-1C6796BADBE9"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p22:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4505098C-0A2B-481E-A3DF-D6DF8EFA4DE7"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p23:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C12AFCCF-014E-4EEB-8F04-F1ACE182BA98"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E2342E2D-58B0-43E7-8C01-DF4678520F39"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1871B646-CA69-477F-B113-B901AC7B3934"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EEC65A72-CAE1-4E28-83EF-7ECAFE921BB6"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D8FDECBC-8213-495F-A932-C4310F7C1F87"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CB49BC95-6AA8-4F53-A3D6-E199BF756AAF"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "050B6617-8FD4-47A6-BE4A-A52503A65812"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.2.0:p9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4CA0FEC5-7036-47AF-A341-873B6C324B58"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.3.0:b1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1A020A77-7D84-4557-9B0B-D74A89BC1538"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.3.0:b2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D9770554-978B-4552-9E0E-CD6B6675243C"}, {"criteria": "cpe:2.3:a:checkmk:checkmk:2.3.0:b3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1883D2F4-CB96-4DDE-87E8-D1990A3FA092"}], "operator": "OR"}]}], "sourceIdentifier": "security@checkmk.com"}