CVE-2020-22425

Centreon 19.10-3.el7 is affected by a SQL injection vulnerability, where an authorized user is able to inject additional SQL queries to perform remote command execution.
Configurations

Configuration 1 (hide)

cpe:2.3:a:centreon:centreon:19.10:*:*:*:*:*:*:*

History

21 Nov 2024, 05:13

Type Values Removed Values Added
References () https://code610.blogspot.com/2020/04/postauth-sqli-in-centreon-1910-1el7.html%2C - () https://code610.blogspot.com/2020/04/postauth-sqli-in-centreon-1910-1el7.html%2C -
References () https://github.com/c610/free/ - Product () https://github.com/c610/free/ - Product

07 Nov 2023, 03:19

Type Values Removed Values Added
References
  • {'url': 'https://code610.blogspot.com/2020/04/postauth-sqli-in-centreon-1910-1el7.html,', 'name': 'https://code610.blogspot.com/2020/04/postauth-sqli-in-centreon-1910-1el7.html,', 'tags': ['Broken Link', 'Third Party Advisory'], 'refsource': 'MISC'}
  • () https://code610.blogspot.com/2020/04/postauth-sqli-in-centreon-1910-1el7.html%2C -

Information

Published : 2021-02-15 18:15

Updated : 2024-11-21 05:13


NVD link : CVE-2020-22425

Mitre link : CVE-2020-22425

CVE.ORG link : CVE-2020-22425


JSON object : View

Products Affected

centreon

  • centreon
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')