CVE-2021-27676: XSS
Published May 26, 2021
·Updated
Centreon version 20.10.2 is affected by a cross-site scripting (XSS) vulnerability. The depdescription (Dependency Description) and depname (Dependency Name) parameters are vulnerable to stored XSS. A user has to log in and go to the Configuration > Notifications > Hosts page.
Affected Software
1 affected component
Centreon Centreon=20.10.2
Event History
May 26, 2021
CVE Published
via MITRE·10:20 AM
Data Sourced
via MITRE·10:20 AM
Description
Data Sourced
via NVD·11:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the CVE ID of this vulnerability?
The CVE ID of this vulnerability is CVE-2021-27676.
2
What is the severity of this vulnerability?
The severity of this vulnerability is medium with a CVSS score of 5.4.
3
How does this vulnerability affect Centreon?
This vulnerability affects Centreon version 20.10.2.
4
What is the vulnerability type of this vulnerability?
This vulnerability is a cross-site scripting (XSS) vulnerability.
5
How can I fix this vulnerability?
To fix this vulnerability, update Centreon to a version that is not affected by the vulnerability.