Home
MEDIUM: 6.9 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:H/SI:N/SA:NDefault status
unaffected
2.2 (semver) before 6.1.1
affected
Description
Improper Certificate Validation in Checkmk Exchange plugin check-mk-api allows attackers in MitM position to intercept traffic.
Problem types
CWE-295 Improper Certificate Validation
Product status
2.2 (semver) before 6.1.1
Credits
Felix Eberstaller (Limes Security)
Jakob Hartmann (Limes Security)
References
exchange.checkmk.com/p/check-mk-api