Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-37648 | Improper Certificate Validation in Checkmk Exchange plugin MikroTik allows attackers in MitM position to intercept traffic. This issue affects MikroTik: from 2.0.0 through 2.5.5, from 0.4a_mk through 2.0a. |
| Link | Providers |
|---|---|
| https://exchange.checkmk.com/p/mikrotik |
|
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 11 Dec 2024 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tomtretbar
Tomtretbar mikrotik |
|
| CPEs | cpe:2.3:a:tomtretbar:mikrotik:*:*:*:*:*:checkmk:*:* | |
| Vendors & Products |
Tomtretbar
Tomtretbar mikrotik |
|
| Metrics |
cvssV3_1
|
Fri, 27 Sep 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 27 Sep 2024 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Certificate Validation in Checkmk Exchange plugin MikroTik allows attackers in MitM position to intercept traffic. This issue affects MikroTik: from 2.0.0 through 2.5.5, from 0.4a_mk through 2.0a. | |
| Title | Lack of TLS validation in plugin MikroTik on Checkmk Exchange | |
| Weaknesses | CWE-295 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Checkmk
Published:
Updated: 2024-09-27T15:21:54.470Z
Reserved: 2024-06-20T10:03:09.178Z
Link: CVE-2024-38861
Updated: 2024-09-27T15:21:49.768Z
Status : Analyzed
Published: 2024-09-27T09:15:02.873
Modified: 2024-12-20T18:57:56.383
Link: CVE-2024-38861
No data.
OpenCVE Enrichment
No data.
EUVD