CVE-2024-28831

Publication date

2024-06-25 11:45:27

Family

Checkmk

State

PUBLISHED

Description

Stored XSS in some confirmation pop-ups in Checkmk before versions 2.3.0p7 and 2.2.0p28 allows Checkmk users to execute arbitrary scripts by injecting HTML elements into some user input fields that are shown in a confirmation pop-up.