Skip to content

unauthenticated (2.1.0 - 2.1.0.p11) / authenticated (<2.1.0p12) RCE exploit for Checkmk.

Notifications You must be signed in to change notification settings

gbrsh/checkmk-race

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

8 Commits
 
 
 
 

Repository files navigation

checkmk-race

unauthenticated (2.1.0 - 2.1.0.p11) / authenticated (<2.1.0p12) RCE exploit for Checkmk.

SSRF---------->LQL Injection--->Arb File Deletion--->Race Condition--->Arb File Read--->Code Injection == Win!

CVE-2022-48321 CVE-2022-46836

Screenshot 2023-01-25 at 12 08 22


Screenshot 2023-01-25 at 12 37 59


About

unauthenticated (2.1.0 - 2.1.0.p11) / authenticated (<2.1.0p12) RCE exploit for Checkmk.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages