CVE-2024-39841: SQL Injection
A SQL Injection vulnerability exists in the service configuration functionality in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.04.19, and 22.10.x before 22.10.23.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-39841?
CVE-2024-39841 is classified as a critical SQL Injection vulnerability affecting multiple versions of Centreon Web.
How do I fix CVE-2024-39841?
To resolve CVE-2024-39841, upgrade Centreon Web to versions 24.04.3, 23.10.13, 23.04.19, or 22.10.23 or later.
What versions are affected by CVE-2024-39841?
CVE-2024-39841 affects Centreon Web versions prior to 24.04.3, 23.10.13, 23.04.19, and 22.10.23.
Is there a workaround for CVE-2024-39841?
Currently, there are no documented workarounds for CVE-2024-39841; the best mitigation is to update to a patched version.
What type of vulnerability is CVE-2024-39841?
CVE-2024-39841 is a SQL Injection vulnerability that allows attackers to execute arbitrary SQL queries against the database.