CVE-2023-23549: DoS via long hostnames
Improper Input Validation in Checkmk <2.2.0p15, <2.1.0p37, <=2.0.0p39 allows priviledged attackers to cause partial denial of service of the UI via too long hostnames.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-23549?
CVE-2023-23549 has been classified as a moderate severity vulnerability due to its potential to cause partial denial of service.
How do I fix CVE-2023-23549?
To fix CVE-2023-23549, upgrade your Checkmk installation to version 2.2.0p15 or later, or 2.1.0p37 or later.
What causes CVE-2023-23549?
CVE-2023-23549 is caused by improper input validation that allows attackers to submit excessively long hostnames.
Which versions of Checkmk are affected by CVE-2023-23549?
CVE-2023-23549 affects Checkmk versions below 2.2.0p15, below 2.1.0p37, and all versions of 2.0.0 up to 2.0.0p39.
What are the potential impacts of CVE-2023-23549?
The potential impacts of CVE-2023-23549 include notable disruption of the user interface, leading to a partial denial of service.