CVE-2025-64998 | Checkmk up to 2.2.0/2.3.0p44/2.4.0p22 Session Cookie insufficiently protected credentials (Nessus ID 304142)
A vulnerability classified as problematic was found in Checkmk up to 2.2.0/2.3.0p44/2.4.0p22. Affected by this issue is some unknown functionality of the component Session Cookie Handler. The manipulation results in insufficiently protected credentials.
This vulnerability is identified as CVE-2025-64998. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.