CVE-2025-39666Disclosure(checkmk / checkmk)

LOWCVSS 7.3 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch checkmk checkmk systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Local privilege escalation in Checkmk 2.2.0 (EOL), Checkmk 2.3.0 before 2.3.0p46, Checkmk 2.4.0 before 2.4.0p25, and Checkmk 2.5.0 (beta) before 2.5.0b3 allows a site user to escalate their privileges to root, by manipulating files in the site context that are processed when the `omd` administrative command is run by root.

0.5/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-426CWE-829

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • checkmk

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 4 classified signals
  • Peaked 2d ago at 2 mentions (2026-04-07); latest day: 1
  • 4 total mentions across 3 days

Affected systems

Vendors
Products
checkmk

4 versions affected across 1 product

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-04-07: 2Mentions · 2026-04-11: 1Mentions · 2026-04-19: 1Patch / Workaround · 2026-04-11: 1Technical Details · 2026-04-07: 2Technical Details · 2026-04-11: 1Technical Details · 2026-04-19: 104-0704-1104-19
Signal classification1 categories
Disclosure
4100.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-04-072
Disclosure2
2026-04-111
Disclosure1
2026-04-191
Disclosure1
Full discourse4 posts
  • Misbar | مسبار@MisbarSec
    Disclosure

    📌 تصعيد امتيازات حرج في Checkmk تم اكتشاف ثغرة أمنية حرجة في منصة المراقبة Checkmk، تتيح للمستخدمين المحليين الاستيلاء الكامل على النظام المضيف. تم تتبع الثغرة، التي تم تحديدها بـ CVE-2025-39666، كآلية لتصعيد الامتيازات، مما يعرض الأنظمة المتأثرة لخطر الاختراق الشامل. يفتح هذا العيب الباب أمام استغلال محلي محتمل للتحكم بالنظام، مما يستدعي إجراءات تصحيحية فورية. — يُنصح بـ تطبيق التحديثات الأمنية المتاحة لتخفيف المخاطر. 🔗 للمزيد: https://securityonline.info/checkmk-cve-2025-39666-omd-privilege-escalation/

    Post summary

    The announcement details a critical local privilege escalation vulnerability (CVE-2025-39666) in Checkmk, recommends urgent patching, and lacks evidence of exploit availability or active use.

    00050652
    256 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2025-39666 Local privilege escalation in Checkmk 2.2.0 (EOL), Checkmk 2.3.0 before 2.3.0p46, Checkmk 2.4.0 before 2.4.0p25, and Checkmk 2.5.0 (beta) before 2.5.0b3 allows a site… https://www.cve.org/CVERecord?id=CVE-2025-39666

    Post summary

    A local privilege escalation vulnerability (CVE-2025-39666) affecting multiple Checkmk versions is disclosed, providing affected releases but no PoC, exploit, or mitigation details.

    00010257
    57.2K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2025-39666 Local Privilege Escalation in Checkmk 2.2.0 Through 2.5.0 via omd Command Manipulation https://vulmon.com/vulnerabilitydetails?qid=CVE-2025-39666

    Post summary

    CVE-2025-39666 is a local privilege escalation vulnerability in Checkmk versions 2.2.0 through 2.5.0, caused by omd command manipulation. The post provides technical details but no PoC, exploit code, active exploitation evidence, or patch information.

    0000087
    4.0K followersView on X
  • 0day Signal@0dayPublishing
    Disclosure

    🚨 CVE-2025-39666: omd: Local privilege escalation ... Site users can drop malicious files that get processed when admins run `omd` - classic file manipulation privesc with a... https://zerodaysignal.com/vulnerability/CVE-2025-39666 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    CVE-2025-39666 is a local privilege escalation vulnerability in omd that occurs when users drop malicious files processed by admins running omd, as described on zerodaysignal.com.

    00000228
    204 followersView on X
CPE platform detail142 entries

142 of 142 entries

PartVendorProductVersionTarget SWTarget HW
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.2.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.3.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.4.0--
Appcheckmkcheckmk2.5.0--
Appcheckmkcheckmk2.5.0--

Explore more