AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-47909

MEDIUM · CVSS 6.8 EPSS 0.39%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-02-20 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-47909
Severity
MEDIUM
CVSS
6.8
EPSS
0.39%

Original NVD Description

Livestatus Query Language (LQL) injection in the AuthUser HTTP query header of Tribe29's Checkmk <= 2.1.0p11, Checkmk <= 2.0.0p28, and all versions of Checkmk 1.6.0 (EOL) allows an attacker to perform direct queries to the application's core from localhost.

Related CVEs

Other vulnerabilities affecting the same vendor(s)