CVE-2018-21025: Critical severity centreon vulnerability
Published Oct 8, 2019
·Updated
In Centreon VM through 19.04.3, centreon-backup.pl allows attackers to become root via a crafted script, due to incorrect rights of sourced configuration files.
Affected Software
2 affected components
composer/centreon/centreon<=19.04.3
Centreon Centreon VM<=19.04.3
Event History
Oct 8, 2019
CVE Published
via MITRE·12:18 PM
Data Sourced
via MITRE·12:18 PM
Description
May 24, 2022
Advisory Published
04:57 PM
Frequently Asked Questions
1
What is the severity of CVE-2018-21025?
CVE-2018-21025 is classified as a high severity vulnerability due to its potential to allow attackers to gain root access.
2
How do I fix CVE-2018-21025?
To fix CVE-2018-21025, ensure that the permissions on the sourced configuration files used by centreon-backup.pl are set correctly.
3
Which versions are affected by CVE-2018-21025?
CVE-2018-21025 affects Centreon VM versions up to and including 19.04.3.
4
What type of vulnerability is CVE-2018-21025?
CVE-2018-21025 is a privilege escalation vulnerability that can be exploited via crafted scripts.
5
What software does CVE-2018-21025 impact?
CVE-2018-21025 impacts Centreon VM and the Centreon package specifically up to version 19.04.3.