CVE-2023-6287

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Nov 27, 2023
Updated: Dec 1, 2023
CWE ID 598
CWE ID 532

Summary

CVE-2023-6287 is a vulnerability affecting the Webconf component in Tribe29 Checkmk Appliance versions prior to 1.6.8. This issue grants local attackers the ability to access sensitive data, specifically passwords, by exploiting the vulnerability to read log files. The exposure of such information can potentially lead to unauthorized system access and data breaches. It is recommended that users upgrade to the latest version of the software to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Tribe29 Checkmk Appliance Firmware

Affected Vendors

  • Tribe29