Information leakage in mknotifyd in Checkmk before 2.3.0p18, 2.2.0p36, 2.1.0p49 and in 2.0.0p39 (EOL) allows attacker to get potentially sensitive data
The code transmits data to another actor, but a portion of the data includes sensitive information that should not be accessible to that actor.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://checkmk.com/werk/17145 | vendor advisory |