Description
The "NagVis" component within Checkmk is vulnerable to reflected cross-site scripting. An attacker can craft a malicious link that will execute arbitrary JavaScript in the context of the browser once clicked. The attack can be performed on both authenticated and unauthenticated users.
Problem types
CWE-79 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')
Product status
NagVis 1.9.40 (semver) before 1.9.42
Checkmk 2.3.0p2 (semver) before 2.3.0p10
Credits
This vulnerability was discovered by Jaggar Henry and Jim Becher of KoreLogic, Inc.
References
seclists.org/fulldisclosure/2025/Feb/3
www.openwall.com/lists/oss-security/2025/02/04/3
lists.debian.org/debian-lts-announce/2025/05/msg00000.html
korelogic.com/Resources/Advisories/KL-001-2025-001.txt
korelogic.com/Resources/Advisories/KL-001-2025-001.txt
www.nagvis.org/downloads/changelog/1.9.42
checkmk.com/werks?version=2.3.0p10