25
I Use This!
Activity Not Available
Analyzed 12 months ago. based on code collected almost 4 years ago.
 

Security

Vulnerabilities per Version

Learn more about BDSAs
 
 

Major Versions

1yr
3yr
5yr
10yr
All
click and drag to zoom
 
 
Security Vulnerabilities for Version:
Severities:
Type
Identifier Related Record Severity Date Published Description Versions Affected
BDSA-2024-7191 Medium Oct 14, 2024 An issue was discovered in the centreon-bi-server component in Centreon BI Server 24.04.x before 24.04.3, 23.10.x before 23.10.8, 23.04.x before 23.04. more...
BDSA-2024-6620 Medium Sep 24, 2024 A SQL injection vulnerability in Centreon 24.04.2 allows a remote high-privileged attacker to execute arbitrary SQL command via create user form inputs more...
BDSA-2024-6619 Medium Sep 24, 2024 A SQL injection vulnerability in Centreon 24.04.2 allows a remote high-privileged attacker to execute arbitrary SQL command via user massive changes in more...
BDSA-2024-5704 High Aug 27, 2024 Centreon is vulnerable to SQL injection (SQLi) in the class `centreonDowntime`. A remote attacker could extract, modify, and delete information from th more...
BDSA-2024-5702 High Aug 27, 2024 Centreon is vulnerable to SQL injection (SQLi) in the function `insertGraphTemplateInDB`. A remote attacker could extract, modify, and delete informati more...
BDSA-2024-5701 High Aug 26, 2024 Centreon is vulnerable to remote code execution (RCE) due to an SQL injection (SQLi) vulnerability in the function `testServiceExistence`. A authentica more...
BDSA-2024-5699 High Aug 26, 2024 Centreon is vulnerable to remote code execution (RCE) due to an SQL injection (SQLi) vulnerability in the function `updateServiceHost_MC`. A authentica more...
BDSA-2024-5685 High Aug 26, 2024 Centreon is vulnerable to remote code execution (RCE) due to an SQL injection (SQLi) vulnerability in the function `updateServiceHost`. An authenticate more...
BDSA-2024-5684 High Aug 26, 2024 Centreon is vulnerable to remote code execution (RCE) due to an SQL injection (SQLi) vulnerability in the function `initCurveList`. An authenticated re more...
BDSA-2024-2363 Medium May 03, 2024 Centreon sysName Cross-Site Scripting Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affe more...