Security Advisory

CVE-2024-28831

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-06-25 11:45:27
Last updated 2024-08-02 00:56:58
Assigner Checkmk
State PUBLISHED

Description

Stored XSS in some confirmation pop-ups in Checkmk before versions 2.3.0p7 and 2.2.0p28 allows Checkmk users to execute arbitrary scripts by injecting HTML elements into some user input fields that are shown in a confirmation pop-up.