ZDI-CAN-24537: ZDI-24-1459: Centreon updateAccessGroupLinks_MC SQL Injection Privilege Escalation Vulnerability
This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 4.7. The following CVEs are assigned: CVE-2024-39843.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-24537?
The ZDI-CAN-24537 vulnerability has a CVSS rating of 4.7, indicating a moderate severity level.
How do I fix ZDI-CAN-24537?
To address ZDI-CAN-24537, apply the latest security updates provided by Centreon when they become available.
Who can exploit ZDI-CAN-24537?
ZDI-CAN-24537 can be exploited by remote attackers who have already authenticated to the affected installations of Centreon.
What systems are affected by ZDI-CAN-24537?
ZDI-CAN-24537 affects installations of the Centreon software.
What type of vulnerability is ZDI-CAN-24537?
ZDI-CAN-24537 is a privilege escalation vulnerability that allows unauthorized users to gain higher access levels.