CVE-2025-39666

Local privilege escalation in Checkmk 2.2.0 (EOL), Checkmk 2.3.0 before 2.3.0p46, Checkmk 2.4.0 before 2.4.0p25, and Checkmk 2.5.0 (beta) before 2.5.0b3 allows a site user to escalate their privileges to root, by manipulating files in the site context that are processed when the `omd` administrative command is run by root.
CVSS

No CVSS.

References
Configurations

No configuration.

History

07 Apr 2026, 13:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-07 13:16

Updated : 2026-04-07 13:20


NVD link : CVE-2025-39666

Mitre link : CVE-2025-39666

CVE.ORG link : CVE-2025-39666


JSON object : View

Products Affected

No product.

CWE
CWE-426

Untrusted Search Path

CWE-829

Inclusion of Functionality from Untrusted Control Sphere