Vulnerability index

Browse CVEs

107 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2026-2750 Improper Input Validation vulnerability in Centreon Centreon Open Tickets on Central Server on Linux (Centreon Open Tickets modules).This issue affec… Web 24.04.24 / 24.10.20+ Fix from $2,3002026-02-27 HIGH 8.8 CVE-2026-2749 Vulnerability in Centreon Centreon Open Tickets on Central Server on Linux (Centroen Open Ticket modules).This issue affects Centreon Open Tickets on… Open Tickets 24.04.7 / 24.10.8+ Fix from $1,9502026-02-27 CRITICAL 9.8 CVE-2026-2751 Blind SQL Injection via unsanitized array keys in Service Dependencies deletion. Vulnerability in Centreon Centreon Web on Central Server on Linux (S… Centreon Web 24.04.24. / 24.10.20+ Fix from $2,3002026-02-27 CRITICAL 9.8 CVE-2025-15026 Missing Authentication for Critical Function vulnerability in Centreon Infra Monitoring centreon-awie (Awie import module) allows Accessing Functiona… Awie 24.04.3 / 24.10.3+ Fix from $2,3002026-01-05 CRITICAL 9.8 CVE-2025-15029EPSS 11% Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Centreon Infra Monitoring (Awie export modules)… Awie 24.04.3 / 24.10.3+ Fix from $2,3002026-01-05 MEDIUM 5.3 CVE-2025-12519 Missing Authorization vulnerability in Centreon Infra Monitoring (Administration parameters API endpoint modules) allows Accessing Functionality Not … Centreon Web 24.04.19 / 24.10.15+ Fix from $1,6002026-01-05 HIGH 7.2 CVE-2025-5965EPSS 26% In the backup parameters, a user with high privilege is able to concatenate custom instructions to the backup setup. Improper Neutralization of Speci… Centreon Web 24.04.19 / 24.10.15+ Fix from $1,9502026-01-05 HIGH 7.2 CVE-2025-12514 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Centreon Infra Monitoring - Open-tickets (Notif… Open Tickets 23.10.4 / 24.04.5+ Fix from $1,9502025-12-22 MEDIUM 5.4 CVE-2025-8459 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Centreon Infra Monitoring (Monitoring re… Centreon Web 23.10.28 / 24.04.18+ Fix from $1,6002025-10-14 MEDIUM 5.4 CVE-2025-8428 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Centreon Infra Monitoring (HTTP Loader w… Centreon Web 23.10.28 / 24.04.18+ Fix from $1,6002025-10-14 HIGH 7.2 CVE-2025-5946EPSS 14% Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Centreon Infra Monitoring (Poller reload … Centreon Web 23.10.28 / 24.04.18+ Fix from $1,9502025-10-14 HIGH 8.8 CVE-2025-6791 In the monitoring event logs page, it is possible to alter the http request to insert a reflect payload in the DB. Caused by an Improper Neutralizati… Centreon Web 23.10.26 / 24.04.16+ Fix from $1,9502025-08-22 HIGH 7.2 CVE-2025-4650 User with high privileges is able to introduce a SQLi using the Meta Service indicator page. Caused by an Improper Neutralization of Special Elements… Centreon Web 23.10.26 / 24.04.16+ Fix from $1,9502025-08-22 HIGH 7.2 CVE-2025-4646 Incorrect Authorization vulnerability in Centreon web (API Token creation form modules) allows Privilege Escalation.This issue affects web: from 24.0… Centreon Web 24.04.10 / 24.10.4+ Fix from $1,9502025-05-13 MEDIUM 5.9 CVE-2025-4648 The content of a SVG file, received as input in Centreon web, was not properly checked. Allows Reflected XSS. A user with elevated privileges can i… Centreon Web 22.10.29 / 23.04.27+ Fix from $1,6002025-05-13 HIGH 7.2 CVE-2025-3872 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Centreon centreon-web (User configuration form … Centreon Web 22.10.28 / 23.04.25+ Fix from $1,9502025-04-24 HIGH 7.2 CVE-2024-55573 An issue was discovered in Centreon centreon-web 24.10.x before 24.10.3, 24.04.x before 24.04.9, 23.10.x before 23.10.19, 23.04.x before 23.04.24. A … Centreon Web 23.04.24 / 23.10.19+ Fix from $1,9502025-01-23 HIGH 7.2 CVE-2024-53923 An issue was discovered in Centreon Web 24.10.x before 24.10.3, 24.04.x before 24.04.9, 23.10.x before 23.10.19, 23.04.x before 23.04.24. A user with… Centreon Web 23.04.24 / 23.10.19+ Fix from $1,9502025-01-23 HIGH 7.2 CVE-2024-39842 A SQL injection vulnerability in Centreon 24.04.2 allows a remote high-privileged attacker to execute arbitrary SQL command via user massive changes … Centreon Mitigation only Fix from $1,9502024-09-23 MEDIUM 6.7 CVE-2024-39843 A SQL injection vulnerability in Centreon 24.04.2 allows a remote high-privileged attacker to execute arbitrary SQL command via create user form inpu… Centreon Mitigation only Fix from $1,6002024-09-23 CRITICAL 9.8 CVE-2024-32501EPSS 19% A SQL Injection vulnerability exists in the updateServiceHost functionality in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x … Centreon Web 22.10.23 / 23.04.19+ Fix from $2,3002024-08-23 CRITICAL 9.1 CVE-2024-33852 A SQL Injection vulnerability exists in the Downtime component in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.04.… Centreon Web 22.10.23 / 23.04.19+ Fix from $2,3002024-08-23 CRITICAL 9.1 CVE-2024-33853 A SQL Injection vulnerability exists in the Timeperiod component in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.0… Centreon Web 22.10.23 / 23.04.19+ Fix from $2,3002024-08-23 CRITICAL 9.1 CVE-2024-33854 A SQL Injection vulnerability exists in the Graph Template component in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before … Centreon Web 22.10.23 / 23.04.19+ Fix from $2,3002024-08-23 HIGH 8.8 CVE-2024-39841 A SQL Injection vulnerability exists in the service configuration functionality in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.0… Centreon Web 22.10.23 / 23.04.19+ Fix from $1,9502024-08-23 HIGH 8.8 CVE-2024-5723EPSS 41% Centreon updateServiceHost SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on… Centreon Web 22.04.24 / 22.10.22+ Fix from $1,9502024-08-21 HIGH 8.8 CVE-2024-5725EPSS 47% Centreon initCurveList SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on aff… Centreon Web 22.10.23 / 23.04.19+ Fix from $1,9502024-08-21 CRITICAL 9.6 CVE-2023-51633 Centreon sysName Cross-Site Scripting Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on af… Centreon Web 22.10.15 / 23.04.10+ Fix from $2,3002024-05-03 HIGH 8.8 CVE-2024-23119 Centreon insertGraphTemplate SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code … Centreon Web 22.04.19 / 22.10.17+ Fix from $1,9502024-04-01 HIGH 7.2 CVE-2024-23117EPSS 53% Centreon updateContactServiceCommands SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr… Centreon Web 22.04.19 / 22.10.17+ Fix from $1,9502024-04-01