Centreon Infra Monitoring
cpe:2.3:a:centreon:centreon:*:*:*:*:*:*:*, +1 more
- >= 25.10.0, < 25.10.2
- >= 24.10.0, < 24.10.15
- >= 24.04.0, < 24.04.19
A high-privilege user can exploit a command injection vulnerability in the backup configuration of Centreon Infra Monitoring. This issue is present in versions 25.10.0 prior to 25.10.2, 24.10.0 prior to 24.10.15, and 24.04.0 prior to 24.04.19.
Exploitation of this vulnerability allows for arbitrary operating system commands to be executed, potentially leading to unauthorized actions or access on the server where Centreon is running.
Users can upgrade to Centreon versions 25.10.2, 24.10.15, or 24.04.19 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.