CVE-2025-39664 | Checkmk up to 2.1.0/2.2.0p45/2.3.0p37/2.4.0p12 Report Scheduler path traversal (WID-SEC-2025-2253)
A vulnerability described as critical has been identified in Checkmk up to 2.1.0/2.2.0p45/2.3.0p37/2.4.0p12. The impacted element is an unknown function of the component Report Scheduler. Such manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2025-39664. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is recommended.