Improper Certificate Validation in Checkmk Exchange plugin check-mk-api allows attackers in MitM position to intercept traffic.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://exchange.checkmk.com/p/check-mk-api |
|
History
Tue, 23 Sep 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Heinlein-support
Heinlein-support check Mk Python Api |
|
| CPEs | cpe:2.3:a:heinlein-support:check_mk_python_api:-:*:*:*:*:checkmk:*:* | |
| Vendors & Products |
Heinlein-support
Heinlein-support check Mk Python Api |
|
| Metrics |
cvssV3_1
|
Thu, 28 Aug 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Checkmk
Checkmk checkmk |
|
| Vendors & Products |
Checkmk
Checkmk checkmk |
Thu, 28 Aug 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 28 Aug 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Certificate Validation in Checkmk Exchange plugin check-mk-api allows attackers in MitM position to intercept traffic. | |
| Title | Lack of TLS validation in plugin check-mk-api on Checkmk Exchange | |
| Weaknesses | CWE-295 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Checkmk
Published: 2025-08-28T12:59:28.526Z
Updated: 2025-10-07T09:33:24.363Z
Reserved: 2025-08-25T11:50:49.622Z
Link: CVE-2025-58124
Updated: 2025-08-28T13:18:39.474Z
Status : Analyzed
Published: 2025-08-28T13:16:09.977
Modified: 2025-09-23T16:07:25.177
Link: CVE-2025-58124
No data.