CVE-2025-32919
Use of an insecure temporary directory in the Windows License plugin for the Checkmk Windows Agent allows Privilege Escalation. This issue affects Checkmk: from 2.4.0 before 2.4.0p13, from 2.3.0 before 2.3.0p38, from 2.2.0 before 2.2.0p46, and all versions of 2.1.0 (EOL).
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://checkmk.com/werk/18207, https://github.com/sbaresearch/advisories/tree/public/2025/SBA-ADV-20250724-01CheckmkAgentPrivilegeEscalationviaInsecureTemporaryFiles, http://seclists.org/fulldisclosure/2025/Oct/6
