Centreon / Centreon
71 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-3872 | Privilege escalation by altering payload in contact form | HIGH | 7.2 | Apr 24, 2025 |
| CVE-2024-45756 | An issue was discovered in Centreon centreon-open-tickets 24.10.x before 24.10.0, 24.04.x before 24.04.2, 23.10.x before 23.10.1, 23.04.x before 23.04.3, and 2… | HIGH | 7.2 | Nov 25, 2024 |
| CVE-2024-45755 | An issue was discovered in Centreon centreon-dsm-server 24.10.x before 24.10.0, 24.04.x before 24.04.3, 23.10.x before 23.10.1, 23.04.x before 23.04.3, and 22.… | HIGH | 7.2 | Nov 25, 2024 |
| CVE-2024-45754 | An issue was discovered in the centreon-bi-server component in Centreon BI Server 24.04.x before 24.04.3, 23.10.x before 23.10.8, 23.04.x before 23.04.11, and… | HIGH | 7.2 | Oct 11, 2024 |
| CVE-2024-39843 | A SQL injection vulnerability in Centreon 24.04.2 allows a remote high-privileged attacker to execute arbitrary SQL command via create user form inputs. | MEDIUM | 6.7 | Sep 23, 2024 |
| CVE-2024-39842 | A SQL injection vulnerability in Centreon 24.04.2 allows a remote high-privileged attacker to execute arbitrary SQL command via user massive changes inputs. | HIGH | 7.2 | Sep 23, 2024 |
| CVE-2024-32501 | A SQL Injection vulnerability exists in the updateServiceHost functionality in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.… | CRITICAL | 9.8 | Aug 23, 2024 |
| CVE-2024-5725 | Centreon initCurveList SQL Injection Remote Code Execution Vulnerability | HIGH | 8.8 | Aug 21, 2024 |
| CVE-2024-5723 | Centreon updateServiceHost SQL Injection Remote Code Execution Vulnerability | HIGH | 8.8 | Aug 21, 2024 |
| CVE-2023-51633 | Centreon sysName Cross-Site Scripting Remote Code Execution Vulnerability | CRITICAL | 9.6 | May 3, 2024 |
| CVE-2024-23119 | Centreon insertGraphTemplate SQL Injection Remote Code Execution Vulnerability | HIGH | 8.8 | Apr 1, 2024 |
| CVE-2024-23118 | Centreon updateContactHostCommands SQL Injection Remote Code Execution Vulnerability | HIGH | 7.2 | Apr 1, 2024 |
| CVE-2024-23117 | Centreon updateContactServiceCommands SQL Injection Remote Code Execution Vulnerability | HIGH | 7.2 | Apr 1, 2024 |
| CVE-2024-23116 | Centreon updateLCARelation SQL Injection Remote Code Execution Vulnerability | HIGH | 7.2 | Apr 1, 2024 |
| CVE-2024-23115 | Centreon updateGroups SQL Injection Remote Code Execution Vulnerability | HIGH | 7.2 | Apr 1, 2024 |
| CVE-2024-0637 | Centreon updateDirectory SQL Injection Remote Code Execution Vulnerability | HIGH | 8.8 | Apr 1, 2024 |
| CVE-2022-42429 | This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon. Authentication is required to exploit this vulnerabili… | HIGH | 8.8 | Mar 29, 2023 |
| CVE-2022-42428 | This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon. Authentication is required to exploit this vulnerabili… | HIGH | 8.8 | Mar 29, 2023 |
| CVE-2022-42427 | This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon. Authentication is required to exploit this vulnerabili… | HIGH | 8.8 | Mar 29, 2023 |
| CVE-2022-42426 | This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon. Authentication is required to exploit this vulnerabili… | HIGH | 8.8 | Mar 29, 2023 |
| CVE-2022-42425 | This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon. Authentication is required to exploit this vulnerabili… | HIGH | 8.8 | Mar 29, 2023 |
| CVE-2022-42424 | This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon. Authentication is required to exploit this vulnerabili… | HIGH | 8.8 | Mar 29, 2023 |
| CVE-2022-41142 | This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon. Authentication is required to exploit this vulnerabili… | HIGH | 8.8 | Jan 26, 2023 |
| CVE-2022-3827 | centreon Contact Groups Form formContactGroup.php sql injection | CRITICAL | 9.8 | Nov 2, 2022 |
| CVE-2022-39988 | A cross-site scripting (XSS) vulnerability in Centreon 22.04.0 allows attackers to execute arbitrary web script or HTML via a crafted payload injected into the… | MEDIUM | 5.4 | Oct 6, 2022 |
Showing 1 to 25 of 71 CVEs