CVE-2024-39843: SQL Injection
Published Sep 23, 2024
·Updated
A SQL injection vulnerability in Centreon 24.04.2 allows a remote high-privileged attacker to execute arbitrary SQL command via create user form inputs.
Affected Software
2 affected components
Centreon Centreon
Centreon Centreon=24.04.2
Event History
Sep 23, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-39843?
CVE-2024-39843 has a high severity rating due to its potential for remote exploitation by high-privileged attackers.
2
How do I fix CVE-2024-39843?
To mitigate CVE-2024-39843, it is recommended to upgrade to the latest version of Centreon that addresses this SQL injection vulnerability.
3
What software is affected by CVE-2024-39843?
CVE-2024-39843 affects Centreon version 24.04.2.
4
Can CVE-2024-39843 be exploited remotely?
Yes, CVE-2024-39843 can be exploited remotely by a high-privileged attacker.
5
What type of vulnerability is CVE-2024-39843?
CVE-2024-39843 is a SQL injection vulnerability that allows execution of arbitrary SQL commands.