25
I Use This!
Activity Not Available
Analyzed about 2 years ago. based on code collected about 5 years ago.
 

Security

Vulnerabilities per Version

Learn more about BDSAs
 
 

Major Versions

1yr
3yr
5yr
10yr
All
click and drag to zoom
 
 
Security Vulnerabilities for Version:
Severities:
Type
Identifier Related Record Severity Date Published Description Versions Affected
BDSA-2025-9852 Medium Aug 25, 2025 Centreon is vulnerable to SQL injection (SQLi) due to improper neutralization of special elements used in an SQL command within the Meta Service indica more...
BDSA-2025-9843 High Aug 25, 2025 Centreon is vulnerable to SQL injection (SQLi) due to improper neutralization of special elements in the monitoring event logs module. This could allow more...
BDSA-2024-7191 Medium Oct 14, 2024 An issue was discovered in the centreon-bi-server component in Centreon BI Server 24.04.x before 24.04.3, 23.10.x before 23.10.8, 23.04.x before 23.04. more...
BDSA-2024-6620 Medium Sep 24, 2024 A SQL injection vulnerability in Centreon 24.04.2 allows a remote high-privileged attacker to execute arbitrary SQL command via create user form inputs more...
BDSA-2024-6619 Medium Sep 24, 2024 A SQL injection vulnerability in Centreon 24.04.2 allows a remote high-privileged attacker to execute arbitrary SQL command via user massive changes in more...
BDSA-2024-5704 High Aug 27, 2024 Centreon is vulnerable to SQL injection (SQLi) in the class `centreonDowntime`. A remote attacker could extract, modify, and delete information from th more...
BDSA-2024-5702 High Aug 27, 2024 Centreon is vulnerable to SQL injection (SQLi) in the function `insertGraphTemplateInDB`. A remote attacker could extract, modify, and delete informati more...
BDSA-2024-5701 High Aug 26, 2024 Centreon is vulnerable to remote code execution (RCE) due to an SQL injection (SQLi) vulnerability in the function `testServiceExistence`. A authentica more...
BDSA-2024-5699 High Aug 26, 2024 Centreon is vulnerable to remote code execution (RCE) due to an SQL injection (SQLi) vulnerability in the function `updateServiceHost_MC`. A authentica more...
BDSA-2024-5685 High Aug 26, 2024 Centreon is vulnerable to remote code execution (RCE) due to an SQL injection (SQLi) vulnerability in the function `updateServiceHost`. An authenticate more...