← Back to CVE List

CVE-2024-28832

Published: 2024-06-25T12:15Z
Last Modified: 2024-12-04T16:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Stored XSS in the Crash Report page in Checkmk before versions 2.3.0p7, 2.2.0p28, 2.1.0p45, and 2.0.0 (EOL) allows users with permission to change Global Settings to execute arbitrary scripts by injecting HTML elements into the Crash Report URL in the Global Settings. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt