Privilege escalation in jar_signature
CVE-2023-6740
What is CVE-2023-6740?
The jar_signature agent plugin in Checkmk versions prior to 2.2.0p18, 2.1.0p38, and 2.0.0p39 contains a vulnerability that permits local users to escalate their privileges. This flaw can be exploited by an authenticated local user, potentially enabling unauthorized access to sensitive operations within the Checkmk environment. Administrators are encouraged to update their installations to the latest versions to mitigate the risk associated with this vulnerability, as it poses significant security implications for the integrity of system access management.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Checkmk 2.2.0 < 2.2.0p18
Checkmk 2.1.0 < 2.1.0p38
Checkmk 2.0.0 <= 2.0.0p39
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
