CVE-2024-32501: SQL Injection
Published Aug 23, 2024
·Updated
A SQL Injection vulnerability exists in the updateServiceHost functionality in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.04.19, and 22.10.x before 22.10.23.
Affected Software
5 affected components
Centreon Centreon Web<24.04.3, <23.10.13, <23.04.19, <22.10.23
Centreon Centreon Web>=22.10.0<22.10.23
Centreon Centreon Web>=23.04.0<23.04.19
Centreon Centreon Web>=23.10.0<23.10.13
Centreon Centreon Web>=24.04.0<24.04.3
Event History
Aug 23, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32501?
CVE-2024-32501 has been categorized with a high severity due to its potential for SQL Injection attacks.
2
How do I fix CVE-2024-32501?
To mitigate CVE-2024-32501, upgrade Centreon Web to versions 24.04.3, 23.10.13, 23.04.19, or 22.10.23 or later.
3
What systems are affected by CVE-2024-32501?
CVE-2024-32501 affects Centreon Web versions prior to 24.04.3, 23.10.13, 23.04.19, and 22.10.23.
4
What type of attack can exploit CVE-2024-32501?
CVE-2024-32501 can be exploited through SQL Injection, allowing attackers to manipulate database queries.
5
Is there a workaround for CVE-2024-32501?
There are no official workarounds for CVE-2024-32501; upgrading to the patched versions is recommended.