ZDI-24-1459: Centreon updateAccessGroupLinks_MC SQL Injection Privilege Escalation Vulnerability
This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 4.7. The following CVEs are assigned: CVE-2024-39843.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-24-1459?
The ZDI-24-1459 vulnerability has a CVSS rating of 4.7, indicating a medium severity level.
How do I fix ZDI-24-1459?
To mitigate the ZDI-24-1459 vulnerability, ensure that you update to the latest version of Centreon that addresses this privilege escalation issue.
What type of authentication is required to exploit ZDI-24-1459?
Exploitation of ZDI-24-1459 requires authenticated access to the affected Centreon installations.
What impact does ZDI-24-1459 have on Centreon installations?
ZDI-24-1459 allows remote attackers to escalate privileges, potentially compromising the integrity of affected Centreon systems.
Is there a CVE associated with ZDI-24-1459?
Yes, ZDI-24-1459 is associated with CVE-2024-39843.