An issue was discovered in the centreon-bi-server component in Centreon BI Server 24.04.x before 24.04.3, 23.10.x before 23.10.8, 23.04.x before 23.04.11, and 22.10.x before 22.10.11. SQL injection can occur in the listing of configured reporting jobs. Exploitation is only accessible to authenticated users with high-privileged access.
Metrics
Affected Vendors & Products
References
History
Tue, 15 Oct 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Centreon
Centreon centreon |
|
Weaknesses | CWE-89 | |
CPEs | cpe:2.3:a:centreon:centreon:22.10.0:-:*:*:*:*:*:* cpe:2.3:a:centreon:centreon:23.04.0:*:*:*:*:*:*:* cpe:2.3:a:centreon:centreon:23.10.0:*:*:*:*:*:*:* cpe:2.3:a:centreon:centreon:24.04.0:*:*:*:*:*:*:* |
|
Vendors & Products |
Centreon
Centreon centreon |
|
Metrics |
cvssV3_1
|
Fri, 11 Oct 2024 21:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue was discovered in the centreon-bi-server component in Centreon BI Server 24.04.x before 24.04.3, 23.10.x before 23.10.8, 23.04.x before 23.04.11, and 22.10.x before 22.10.11. SQL injection can occur in the listing of configured reporting jobs. Exploitation is only accessible to authenticated users with high-privileged access. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-10-11T00:00:00
Updated: 2024-10-15T15:59:32.088Z
Reserved: 2024-09-06T00:00:00
Link: CVE-2024-45754
Vulnrichment
Updated: 2024-10-15T15:50:42.718Z
NVD
Status : Awaiting Analysis
Published: 2024-10-11T22:15:04.337
Modified: 2024-10-15T16:35:07.827
Link: CVE-2024-45754
Redhat
No data.