Skip to content
Noroxi

Centreon records

127 published records for vendor centreon.

All records

127 records
  • CVE-2022-41142
    61This week

    This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon.

    HighCVSS 8.8No exploitEPSS 85%

    centreon · centreonJan 26, 2023

  • This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon.

    HighCVSS 8.8No exploitEPSS 76%

    centreon · centreonMar 29, 2023

  • This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon.

    HighCVSS 8.8No exploitEPSS 76%

    centreon · centreonMar 29, 2023

  • This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon.

    HighCVSS 8.8No exploitEPSS 76%

    centreon · centreonMar 29, 2023

  • This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon.

    HighCVSS 8.8No exploitEPSS 76%

    centreon · centreonMar 29, 2023

  • Centreon updateDirectory SQL Injection Remote Code Execution Vulnerability

    HighCVSS 8.8No exploitEPSS 72%

    centreon · centreon webApr 1, 2024

  • Centreon initCurveList SQL Injection Remote Code Execution Vulnerability

    HighCVSS 8.8No exploitEPSS 47%

    centreon · centreon webAug 21, 2024

  • Centreon updateGroups SQL Injection Remote Code Execution Vulnerability

    HighCVSS 7.2No exploitEPSS 67%

    centreon · centreon webApr 1, 2024

  • Centreon updateServiceHost SQL Injection Remote Code Execution Vulnerability

    HighCVSS 8.8No exploitEPSS 41%

    centreon · centreon webAug 21, 2024

  • Centreon 18.x before 18.10.6, 19.x before 19.04.3, and Centreon web before 2.8.29 allows the attacker to execute arbitrary system commands b

    HighCVSS 8.8Proof of conceptEPSS 32%

    centreon · centreonJul 1, 2019

  • A SQL Injection vulnerability exists in the updateServiceHost functionality in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13,

    CriticalCVSS 9.8No exploitEPSS 19%

    centreon · centreon webAug 23, 2024

  • Centreon updateContactServiceCommands SQL Injection Remote Code Execution Vulnerability

    HighCVSS 7.2No exploitEPSS 53%

    centreon · centreon webApr 1, 2024

  • Centreon updateContactHostCommands SQL Injection Remote Code Execution Vulnerability

    HighCVSS 7.2No exploitEPSS 53%

    centreon · centreon webApr 1, 2024

  • Centreon updateLCARelation SQL Injection Remote Code Execution Vulnerability

    HighCVSS 7.2No exploitEPSS 53%

    centreon · centreon webApr 1, 2024

  • A SQL injection vulnerability in image generation in Centreon before 20.04.14, 20.10.8, and 21.04.2 allows remote authenticated (but low-pri

    HighCVSS 8.8No exploitEPSS 27%

    centreon · centreonAug 3, 2021

  • A SQL injection vulnerability in reporting export in Centreon before 20.04.14, 20.10.8, and 21.04.2 allows remote authenticated (but low-pri

    HighCVSS 8.8No exploitEPSS 27%

    centreon · centreonAug 3, 2021

  • A problem was found in Centreon Web through 19.04.3.

    HighCVSS 8.8No exploitEPSS 27%

    centreon · centreon webNov 27, 2019

  • An unauthenticated user is able to introduce SQL Injection using the Awie export module

    CriticalCVSS 9.8No exploitEPSS 13%

    centreon · awieJan 5, 2026

  • There is Remote Code Execution in Centreon 3.4.6 including Centreon Web 2.8.23 via the RPN value in the Virtual Metric form in centreonGraph

    CriticalCVSS 9.8No exploitEPSS 4%

    centreon · centreonJun 25, 2018

  • In Centreon VM through 19.04.3, centreon-backup.pl allows attackers to become root via a crafted script, due to incorrect rights of sourced

    CriticalCVSS 9.8No exploitEPSS 3%

    centreon · centreon vmOct 8, 2019

  • licenseUpload.php in Centreon Web before 2.8.27 allows attackers to upload arbitrary files via a POST request.

    CriticalCVSS 9.8No exploitEPSS 2%

    centreon · centreonOct 8, 2019

  • Multiple SQL injection vulnerabilities in Centreon 3.4.6 including Centreon Web 2.8.23 allow attacks via the searchU parameter in viewLogs.p

    CriticalCVSS 9.8No exploitEPSS 2%

    centreon · centreonJun 25, 2018

  • A SQL injection vulnerability in a MediaWiki script in Centreon before 20.04.14, 20.10.8, and 21.04.2 allows remote unauthenticated attacker

    CriticalCVSS 9.8No exploitEPSS 2%

    centreon · centreonAug 3, 2021

  • An issue was discovered in Centreon before 2.8.30, 18.10.8, 19.04.5, and 19.10.2.

    CriticalCVSS 9.8No exploitEPSS 2%

    centreon · centreonMar 5, 2020

  • Centreon 3.4.x (fixed in Centreon 18.10.0 and Centreon web 2.8.27) allows SNMP trap SQL Injection.

    CriticalCVSS 9.8No exploitEPSS 2%

    centreon · centreonNov 14, 2018