CVE-2024-38860

Improper neutralization of input in Checkmk before versions 2.3.0p16 and 2.2.0p34 allows attackers to craft malicious links that can facilitate phishing attacks.
CVSS

No CVSS.

References
Configurations

No configuration.

History

20 Sep 2024, 12:30

Type Values Removed Values Added
Summary
  • (es) La neutralización incorrecta de la entrada en Checkmk anterior a las versiones 2.3.0p16 y 2.2.0p34 permite a los atacantes crear enlaces maliciosos que pueden facilitar ataques de phishing.

17 Sep 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-17 14:15

Updated : 2024-09-20 12:30


NVD link : CVE-2024-38860

Mitre link : CVE-2024-38860

CVE.ORG link : CVE-2024-38860


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')