漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Command injection in SMS notifications
Vulnerability Description
Command injection in SMS notifications in Tribe29 Checkmk <= 2.1.0p10, Checkmk <= 2.0.0p27, and Checkmk <= 1.6.0p29 allows an attacker with User Management permissions, as well as LDAP administrators in certain scenarios, to perform arbitrary commands within the context of the application's local permissions.
CVSS Information
CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
输入验证不恰当
Vulnerability Title
Checkmk 操作系统命令注入漏洞
Vulnerability Description
Checkmk是一个编辑器。 Tribe29 Checkmk存在操作系统命令注入漏洞,该漏洞源于存在命令注入漏洞,攻击者利用该漏洞可以在应用程序本地权限范围内执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A