CVE-2025-64996
Essential information
- Published
- 18/11/2025 16:15
- Modified
- 24/11/2025 14:13
- Author
- —
- Creator
- —
- CVSS
- 4.8 MEDIUM (v3) 4.8 MEDIUM (v4.0)
- CISA KEV
- No
- CWE
- —
- CVSS vector
-
—
—
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:L/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
CVSS metrics
- Access vector
- —
- Access complexity
- —
- Authentication
- —
- Confidentiality impact
- —
- Integrity impact
- —
- Availability impact
- —
- Exploitability
- —
- Remediation level
- —
- Report confidence
- —
- Temporal score
- —
- Attack vector
- —
- Attack complexity
- —
- Privileges required
- —
- User interaction
- —
- Scope
- —
- Confidentiality impact
- —
- Integrity impact
- —
- Availability impact
- —
- Exploit code maturity
- —
- Remediation level
- —
- Report confidence
- —
- Temporal score
- —
- Attack vector
- LOCAL
- Attack complexity
- LOW
- Attack requirements
- NONE
- Privileges required
- LOW
- User interaction
- NONE
- Confidentiality (V)
- NONE
- Confidentiality (S)
- LOW
- Integrity (V)
- LOW
- Integrity (S)
- NONE
- Availability (V)
- NONE
- Availability (S)
- NONE
- Exploit maturity
- NOT_DEFINED
Description
In Checkmk versions prior to 2.4.0p16, 2.3.0p41, and all versions of 2.2.0 and older, the mk_inotify plugin creates world-readable and writable files, allowing any local user on the system to read the plugin's output and manipulate it, potentially leading to unauthorized access to or modification of monitoring data.
NVD status
- Status
- Analyzed — CVE has had analysis completed and all data associations made.
- Source
- [email protected]
- NVD
- View on NVD
Affected products (CPE)
| Product | CPE |
|---|---|
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:*:*:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:-:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:b1:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:b2:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:b3:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:b4:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:b5:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:b6:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p1:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p10:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p11:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p12:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p13:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p14:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p15:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p16:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p17:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p18:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p19:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p2:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p20:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p21:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p22:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p23:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p24:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p25:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p26:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p27:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p28:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p29:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p3:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p30:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p31:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p32:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p33:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p34:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p35:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p36:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p37:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p38:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p39:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p4:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p40:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p5:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p6:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p7:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p8:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.3.0:p9:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:-:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:b1:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:b2:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:b3:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:b4:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:b5:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:b6:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p1:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p10:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p11:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p12:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p13:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p14:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p15:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p2:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p3:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p4:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p5:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p6:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p7:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p8:*:*:*:*:*:* |
| checkmk / checkmk | cpe:2.3:a:checkmk:checkmk:2.4.0:p9:*:*:*:*:*:* |