Improper Certificate Validation in Checkmk Exchange plugin check-mk-api allows attackers in MitM position to intercept traffic.
                
            Metrics
Affected Vendors & Products
References
        | Link | Providers | 
|---|---|
| https://exchange.checkmk.com/p/check-mk-api |     | 
History
                    Tue, 23 Sep 2025 16:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Heinlein-support Heinlein-support check Mk Python Api | |
| CPEs | cpe:2.3:a:heinlein-support:check_mk_python_api:-:*:*:*:*:checkmk:*:* | |
| Vendors & Products | Heinlein-support Heinlein-support check Mk Python Api | |
| Metrics | cvssV3_1 
 | 
Thu, 28 Aug 2025 21:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Checkmk Checkmk checkmk | |
| Vendors & Products | Checkmk Checkmk checkmk | 
Thu, 28 Aug 2025 14:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Thu, 28 Aug 2025 13:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | Improper Certificate Validation in Checkmk Exchange plugin check-mk-api allows attackers in MitM position to intercept traffic. | |
| Title | Lack of TLS validation in plugin check-mk-api on Checkmk Exchange | |
| Weaknesses | CWE-295 | |
| References |  | |
| Metrics | cvssV4_0 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: Checkmk
Published: 2025-08-28T12:59:28.526Z
Updated: 2025-10-07T09:33:24.363Z
Reserved: 2025-08-25T11:50:49.622Z
Link: CVE-2025-58124
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-08-28T13:18:39.474Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2025-08-28T13:16:09.977
Modified: 2025-09-23T16:07:25.177
Link: CVE-2025-58124
 Redhat
                        Redhat
                    No data.