CVE-2024-45755

EUVD-2024-41690
An issue was discovered in Centreon centreon-dsm-server 24.10.x before 24.10.0, 24.04.x before 24.04.3, 23.10.x before 23.10.1, 23.04.x before 23.04.3, and 22.10.x before 22.10.2. SQL injection can occur in the form to configure Centreon DSM slots. Exploitation is only accessible to authenticated users with high-privileged access.
SQL Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.2 HIGH
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 28%
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
centreoncentreon
24.04.0 ≤
𝑥
< 24.04.2
ADP
centreoncentreon
23.10.0 ≤
𝑥
< 23.10.1
ADP
centreoncentreon
23.04.0 ≤
𝑥
< 23.04.3
ADP
centreoncentreon
22.10.0 ≤
𝑥
< 22.10.2
ADP
centreoncentreon
24.10 ≤
𝑥
< 24.10.0
ADP