CVE-2026-2751: Blind SQL Injection
Blind SQL Injection via unsanitized array keys in Service Dependencies deletion. Vulnerability in Centreon Centreon Web on Central Server on Linux (Service Dependencies modules) allows Blind SQL Injection.This issue affects Centreon Web on Central Server before 25.10.8, 24.10.20, 24.04.24.
Affected Software
Event History
Frequently Asked Questions
What is the CVE-2026-2751 vulnerability?
CVE-2026-2751 is a Blind SQL Injection vulnerability in Centreon Web that allows attackers to manipulate queries through unsanitized array keys in Service Dependencies deletion.
What is the severity of CVE-2026-2751?
CVE-2026-2751 is classified as a high severity vulnerability.
Which versions of Centreon are affected by CVE-2026-2751?
CVE-2026-2751 affects Centreon Web on Central Server versions prior to 25.10.8 and between 24.04.24 and 24.10.20.
How do I fix CVE-2026-2751?
To fix CVE-2026-2751, update Centreon Web to the latest version that is not affected, specifically to 25.10.8 or later.
What can attackers do with CVE-2026-2751?
Attackers exploiting CVE-2026-2751 can perform Blind SQL Injection attacks to retrieve information from the database without being detected.