CVE-2024-47092: Insecure deserialization and improper certificate validation in Checkmk Exchange plugin check-mk-api
Published Mar 3, 2025
·Updated
Insecure deserialization and improper certificate validation in Checkmk Exchange plugin check-mk-api prior to 5.8.1
Affected Software
2 affected components
Checkmk Exchange plugin check-mk-api<5.8.1
Heinlein-support Check Mk Python Api<5.8.1
Remediation
Event History
Mar 3, 2025
CVE Published
via MITRE·01:47 PM
Data Sourced
via MITRE·01:47 PM
DescriptionWeakness
Data Sourced
via NVD·02:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-47092?
CVE-2024-47092 is considered a high severity vulnerability due to its potential for exploitation through insecure deserialization and improper certificate validation.
2
How do I fix CVE-2024-47092?
To remediate CVE-2024-47092, upgrade the Checkmk Exchange plugin check-mk-api to version 5.8.1 or later.
3
What type of vulnerability is CVE-2024-47092?
CVE-2024-47092 involves insecure deserialization and improper certificate validation.
4
Which versions of Checkmk Exchange plugin check-mk-api are affected by CVE-2024-47092?
CVE-2024-47092 affects versions of Checkmk Exchange plugin check-mk-api prior to 5.8.1.
5
What consequences can result from CVE-2024-47092?
Exploitation of CVE-2024-47092 could lead to unauthorized execution of code and compromise of sensitive data.