CVE-2008-1179: XSS
Multiple cross-site scripting (XSS) vulnerabilities in include/common/javascript/colorpicker.php in Centreon 1.4.2.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) title parameters. NOTE: some of these details are obtained from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1179?
CVE-2008-1179 is categorized as a medium severity vulnerability due to the potential for cross-site scripting attacks.
How do I fix CVE-2008-1179?
To fix CVE-2008-1179, upgrade to Centreon version 1.4.3 or later where the vulnerability is addressed.
What are the affected versions of Centreon for CVE-2008-1179?
CVE-2008-1179 affects Centreon versions 1.4, 1.4.1, 1.4.2, and 1.4.2.2.
What attack vector is exploited in CVE-2008-1179?
CVE-2008-1179 allows remote attackers to perform cross-site scripting by injecting scripts via the name and title parameters.
Are there any known exploits for CVE-2008-1179?
Yes, there are known exploits for CVE-2008-1179 that enable attackers to execute arbitrary web scripts in the context of user sessions.