CVE-2023-6287
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Nov 27, 2023
Updated: Dec 1, 2023
CWE ID 598
CWE ID 532
Summary
CVE-2023-6287 is a vulnerability affecting the Webconf component in Tribe29 Checkmk Appliance versions prior to 1.6.8. This issue grants local attackers the ability to access sensitive data, specifically passwords, by exploiting the vulnerability to read log files. The exposure of such information can potentially lead to unauthorized system access and data breaches. It is recommended that users upgrade to the latest version of the software to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Tribe29 Checkmk Appliance Firmware
Affected Vendors
- Tribe29