Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Centreon before 18.10.8, 19.10.1, and 19.04.2. It allows CSRF with resultant remote command execution via shell metacharacters in a POST to centreon-autodiscovery-server/views/scan/ajax/call.php in the Autodiscovery plugin.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Centreon 跨站请求伪造漏洞
Vulnerability Description
Centreon(Merethis Centreon)是法国Centreon公司的一套开源的系统监控工具 。该产品主要提供对网络、系统和应用程序等资源的监控功能。 Centreon 18.10.8之前版本、19.10.1之前版本和19.04.2之前版本中存在安全漏洞。攻击者可通过向centreon-autodiscovery-server/views/scan/ajax/call.php页面发送带有shell元字符的POST请求利用该漏洞执行命令。
CVSS Information
N/A
Vulnerability Type
N/A