Multiple Vulnerabilities in Checkmk
Checkmk is affected by multiple vulnerabilities, including CVE-2024-23334 through CVE-2024-23338, which may allow unauthenticated or authenticated attackers to perform cross-site scripting, information disclosure, or data manipulation.
CVE search metadata
CVE search record: CVE-2024-23334. Severity: medium. CVSS: 5.9. EPSS: 76.88%. KEV: no. Product: Checkmk (<= 1.7.1), Checkmk. Brief: Multiple Vulnerabilities in Checkmk. Brief link: https://feed.craftedsignal.io/briefs/2026-10-checkmk-vulnerabilities/
CVE search record: CVE-2024-23338. KEV: no. Product: Checkmk (<= 1.7.1), Checkmk. Brief: Multiple Vulnerabilities in Checkmk. Brief link: https://feed.craftedsignal.io/briefs/2026-10-checkmk-vulnerabilities/
CVE search record: CVE-2024-23335. Severity: medium. CVSS: 4.7. EPSS: 0.56%. KEV: no. Product: Checkmk (<= 1.7.1), Checkmk. Brief: Multiple Vulnerabilities in Checkmk. Brief link: https://feed.craftedsignal.io/briefs/2026-10-checkmk-vulnerabilities/
CVE search record: CVE-2024-23336. Severity: medium. CVSS: 5.0. EPSS: 0.46%. KEV: no. Product: Checkmk (<= 1.7.1), Checkmk. Brief: Multiple Vulnerabilities in Checkmk. Brief link: https://feed.craftedsignal.io/briefs/2026-10-checkmk-vulnerabilities/
CVE search record: CVE-2024-23337. Severity: medium. CVSS: 4.3. EPSS: 0.44%. KEV: no. Product: Checkmk (<= 1.7.1), Checkmk. Brief: Multiple Vulnerabilities in Checkmk. Brief link: https://feed.craftedsignal.io/briefs/2026-10-checkmk-vulnerabilities/
What's new
- 1. added coverage for Checkmk Oct 8, 19:22 via bsi
Checkmk has been identified as vulnerable to a series of security flaws categorized as CVE-2024-23334, CVE-2024-23335, CVE-2024-23336, CVE-2024-23337, and CVE-2024-23338. These vulnerabilities affect the core functionality of the Checkmk monitoring platform. Depending on the specific vulnerability, attackers may be able to execute cross-site scripting (XSS) attacks, gain unauthorized access to sensitive system information, or manipulate monitoring data within the application. These flaws pose a significant risk to the integrity and confidentiality of monitoring environments. Defenders should identify all instances of Checkmk across their infrastructure and apply the vendor-supplied security patches to mitigate the risk of exploitation.
Impact
Successful exploitation of these vulnerabilities can lead to unauthorized data access, the manipulation of monitoring configurations, or the compromise of user sessions through XSS. This could impact the availability and reliability of infrastructure monitoring services and potentially facilitate further attacks if internal data is exposed to unauthorized parties.
Recommendation
Prioritize the identification of all Checkmk instances in the production environment. Apply vendor-provided security updates immediately to address CVE-2024-23334, CVE-2024-23335, CVE-2024-23336, CVE-2024-23337, and CVE-2024-23338. Review web server access logs for anomalous patterns targeting Checkmk directories, particularly those involving unexpected script injection or unauthorized attempts to access configuration files.
Mitigations
Update all Checkmk instances to the latest vendor-patched version.
CVE-2024-23334, CVE-2024-23335, CVE-2024-23336, CVE-2024-23337, CVE-2024-23338