PHP code injection in watolib auth.php and hosttags.php in Tribe29's Checkmk < 2.1.0p10, Checkmk < 2.0.0p27, and Checkmk < 1.6.0p29 allows an attacker to inject and execute PHP code which will be executed upon request of the vulnerable component.
Publication date: Mon, 20 Feb 2023 23:15:00 +0000