Limited Server-Side Request Forgery (SSRF) in agent-receiver in Tribe29's Checkmk <= 2.1.0p11 allows an attacker to communicate with local network restricted endpoints by use of the host registration API.
| Software | From | Fixed in |
|---|---|---|
| checkmk / checkmk | 2.1.0-b2 | 2.1.0-b2.x |
| checkmk / checkmk | 2.1.0-b3 | 2.1.0-b3.x |
| checkmk / checkmk | 2.1.0-b4 | 2.1.0-b4.x |
| checkmk / checkmk | 2.1.0-b5 | 2.1.0-b5.x |
| checkmk / checkmk | 2.1.0-b6 | 2.1.0-b6.x |
| checkmk / checkmk | 2.1.0-b7 | 2.1.0-b7.x |
| checkmk / checkmk | 2.1.0-b8 | 2.1.0-b8.x |
| checkmk / checkmk | 2.1.0-b9 | 2.1.0-b9.x |
| checkmk / checkmk | 2.1.0-b1 | 2.1.0-b1.x |
| checkmk / checkmk | 2.1.0-p1 | 2.1.0-p1.x |
| checkmk / checkmk | 2.1.0-p2 | 2.1.0-p2.x |
| checkmk / checkmk | 2.1.0-p3 | 2.1.0-p3.x |
| checkmk / checkmk | 2.1.0-p4 | 2.1.0-p4.x |
| checkmk / checkmk | 2.1.0-p5 | 2.1.0-p5.x |
| checkmk / checkmk | 2.1.0-p6 | 2.1.0-p6.x |
| checkmk / checkmk | 2.1.0-p7 | 2.1.0-p7.x |
| checkmk / checkmk | 2.1.0-p8 | 2.1.0-p8.x |
| checkmk / checkmk | 2.1.0-p9 | 2.1.0-p9.x |
| checkmk / checkmk | 2.1.0-p10 | 2.1.0-p10.x |
| checkmk / checkmk | 2.1.0-p11 | 2.1.0-p11.x |
| checkmk / checkmk | 2.1.0 | 2.1.0.x |