CVE-2025-32919

Use of an insecure temporary directory in the Windows License plugin for the Checkmk Windows Agent allows Privilege Escalation. This issue affects Checkmk: from 2.4.0 before 2.4.0p13, from 2.3.0 before 2.3.0p38, from 2.2.0 before 2.2.0p46, and all versions of 2.1.0 (EOL).
CVSS

No CVSS.

Configurations

No configuration.

History

13 Oct 2025, 15:16

Type Values Removed Values Added
References
  • () https://github.com/sbaresearch/advisories/tree/public/2025/SBA-ADV-20250724-01_Checkmk_Agent_Privilege_Escalation_via_Insecure_Temporary_FilesĀ -

09 Oct 2025, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-09 15:16

Updated : 2025-10-13 15:16


NVD link : CVE-2025-32919

Mitre link : CVE-2025-32919

CVE.ORG link : CVE-2025-32919


JSON object : View

Products Affected

No product.

CWE
CWE-427

Uncontrolled Search Path Element