Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Centreon 3.4.x (fixed in Centreon 18.10.0 and Centreon web 2.8.24) allows SQL Injection via the searchVM parameter to the main.php?p=20408 URI.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Centreon SQL注入漏洞
Vulnerability Description
Centreon(Merethis Centreon)是法国Centreon公司的一套需要与Nagios搭配使用的开源IT监控软件。该软件通过网页(Web)管理Nagios,以及通过第三方组件实现对网络、操作系统和应用程序的监控。 Centreon 3.4.x版本中存在SQL注入漏洞。远程攻击者可通过向main.php?p=20408 URI发送‘searchVM’参数利用该漏洞执行任意的SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A