Improper neutralization of livestatus command delimiters in ajax_search in Checkmk <= 2.0.0p39, < 2.1.0p37, and < 2.2.0p15 allows arbitrary livestatus command execution for authorized users.
{
"cpe": [
"cpe:2.3:a:checkmk:checkmk:2.0.0:-:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:b1:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:b2:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:b3:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:b4:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:b5:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:b6:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:b7:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:b8:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:i1:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p1:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p10:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p11:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p12:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p13:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p14:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p15:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p16:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p17:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p18:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p19:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p2:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p20:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p21:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p22:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p23:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p24:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p25:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p26:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p27:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p28:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p29:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p3:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p30:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p31:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p32:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p33:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p34:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p35:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p36:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p37:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p38:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p39:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p4:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p5:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p6:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p7:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p8:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.0.0:p9:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:-:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:b1:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:b2:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:b3:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:b4:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:b5:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:b6:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:b7:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:b8:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:b9:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p1:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p10:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p11:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p12:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p13:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p14:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p15:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p16:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p17:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p18:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p19:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p2:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p20:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p21:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p22:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p23:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p24:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p25:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p26:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p27:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p28:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p29:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p3:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p30:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p31:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p32:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p33:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p34:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p35:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p36:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p4:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p5:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p6:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p7:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p8:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.1.0:p9:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:-:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:b1:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:b2:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:b3:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:b4:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:b5:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:b6:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:b7:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:b8:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:i1:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p1:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p10:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p11:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p12:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p13:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p14:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p2:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p3:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p4:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p5:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p6:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p7:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p8:*:*:*:*:*:*",
"cpe:2.3:a:checkmk:checkmk:2.2.0:p9:*:*:*:*:*:*"
],
"source": "CPE_FIELD",
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "2.0.0-NA"
},
{
"last_affected": "2.0.0-b1"
},
{
"last_affected": "2.0.0-b2"
},
{
"last_affected": "2.0.0-b3"
},
{
"last_affected": "2.0.0-b4"
},
{
"last_affected": "2.0.0-b5"
},
{
"last_affected": "2.0.0-b6"
},
{
"last_affected": "2.0.0-b7"
},
{
"last_affected": "2.0.0-b8"
},
{
"last_affected": "2.0.0-i1"
},
{
"last_affected": "2.0.0-p1"
},
{
"last_affected": "2.0.0-p10"
},
{
"last_affected": "2.0.0-p11"
},
{
"last_affected": "2.0.0-p12"
},
{
"last_affected": "2.0.0-p13"
},
{
"last_affected": "2.0.0-p14"
},
{
"last_affected": "2.0.0-p15"
},
{
"last_affected": "2.0.0-p16"
},
{
"last_affected": "2.0.0-p17"
},
{
"last_affected": "2.0.0-p18"
},
{
"last_affected": "2.0.0-p19"
},
{
"last_affected": "2.0.0-p2"
},
{
"last_affected": "2.0.0-p20"
},
{
"last_affected": "2.0.0-p21"
},
{
"last_affected": "2.0.0-p22"
},
{
"last_affected": "2.0.0-p23"
},
{
"last_affected": "2.0.0-p24"
},
{
"last_affected": "2.0.0-p25"
},
{
"last_affected": "2.0.0-p26"
},
{
"last_affected": "2.0.0-p27"
},
{
"last_affected": "2.0.0-p28"
},
{
"last_affected": "2.0.0-p29"
},
{
"last_affected": "2.0.0-p3"
},
{
"last_affected": "2.0.0-p30"
},
{
"last_affected": "2.0.0-p31"
},
{
"last_affected": "2.0.0-p32"
},
{
"last_affected": "2.0.0-p33"
},
{
"last_affected": "2.0.0-p34"
},
{
"last_affected": "2.0.0-p35"
},
{
"last_affected": "2.0.0-p36"
},
{
"last_affected": "2.0.0-p37"
},
{
"last_affected": "2.0.0-p38"
},
{
"last_affected": "2.0.0-p39"
},
{
"last_affected": "2.0.0-p4"
},
{
"last_affected": "2.0.0-p5"
},
{
"last_affected": "2.0.0-p6"
},
{
"last_affected": "2.0.0-p7"
},
{
"last_affected": "2.0.0-p8"
},
{
"last_affected": "2.0.0-p9"
},
{
"last_affected": "2.1.0-NA"
},
{
"last_affected": "2.1.0-b1"
},
{
"last_affected": "2.1.0-b2"
},
{
"last_affected": "2.1.0-b3"
},
{
"last_affected": "2.1.0-b4"
},
{
"last_affected": "2.1.0-b5"
},
{
"last_affected": "2.1.0-b6"
},
{
"last_affected": "2.1.0-b7"
},
{
"last_affected": "2.1.0-b8"
},
{
"last_affected": "2.1.0-b9"
},
{
"last_affected": "2.1.0-p1"
},
{
"last_affected": "2.1.0-p10"
},
{
"last_affected": "2.1.0-p11"
},
{
"last_affected": "2.1.0-p12"
},
{
"last_affected": "2.1.0-p13"
},
{
"last_affected": "2.1.0-p14"
},
{
"last_affected": "2.1.0-p15"
},
{
"last_affected": "2.1.0-p16"
},
{
"last_affected": "2.1.0-p17"
},
{
"last_affected": "2.1.0-p18"
},
{
"last_affected": "2.1.0-p19"
},
{
"last_affected": "2.1.0-p2"
},
{
"last_affected": "2.1.0-p20"
},
{
"last_affected": "2.1.0-p21"
},
{
"last_affected": "2.1.0-p22"
},
{
"last_affected": "2.1.0-p23"
},
{
"last_affected": "2.1.0-p24"
},
{
"last_affected": "2.1.0-p25"
},
{
"last_affected": "2.1.0-p26"
},
{
"last_affected": "2.1.0-p27"
},
{
"last_affected": "2.1.0-p28"
},
{
"last_affected": "2.1.0-p29"
},
{
"last_affected": "2.1.0-p3"
},
{
"last_affected": "2.1.0-p30"
},
{
"last_affected": "2.1.0-p31"
},
{
"last_affected": "2.1.0-p32"
},
{
"last_affected": "2.1.0-p33"
},
{
"last_affected": "2.1.0-p34"
},
{
"last_affected": "2.1.0-p35"
},
{
"last_affected": "2.1.0-p36"
},
{
"last_affected": "2.1.0-p4"
},
{
"last_affected": "2.1.0-p5"
},
{
"last_affected": "2.1.0-p6"
},
{
"last_affected": "2.1.0-p7"
},
{
"last_affected": "2.1.0-p8"
},
{
"last_affected": "2.1.0-p9"
},
{
"last_affected": "2.2.0-NA"
},
{
"last_affected": "2.2.0-b1"
},
{
"last_affected": "2.2.0-b2"
},
{
"last_affected": "2.2.0-b3"
},
{
"last_affected": "2.2.0-b4"
},
{
"last_affected": "2.2.0-b5"
},
{
"last_affected": "2.2.0-b6"
},
{
"last_affected": "2.2.0-b7"
},
{
"last_affected": "2.2.0-b8"
},
{
"last_affected": "2.2.0-i1"
},
{
"last_affected": "2.2.0-p1"
},
{
"last_affected": "2.2.0-p10"
},
{
"last_affected": "2.2.0-p11"
},
{
"last_affected": "2.2.0-p12"
},
{
"last_affected": "2.2.0-p13"
},
{
"last_affected": "2.2.0-p14"
},
{
"last_affected": "2.2.0-p2"
},
{
"last_affected": "2.2.0-p3"
},
{
"last_affected": "2.2.0-p4"
},
{
"last_affected": "2.2.0-p5"
},
{
"last_affected": "2.2.0-p6"
},
{
"last_affected": "2.2.0-p7"
},
{
"last_affected": "2.2.0-p8"
},
{
"last_affected": "2.2.0-p9"
}
]
}