7.5
CVSSv3

CVE-2018-21020

Published: 08/10/2019 Updated: 11/10/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

In very rare cases, a PHP type juggling vulnerability in centreonAuth.class.php in Centreon Web prior to 2.8.27 allows malicious users to bypass authentication mechanisms in place.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

centreon centreon web

Mailing Lists

Centreon ======== "Centreon is the N°1 Open Source IT Infrastructure Monitoring Solution" Multiple vulnerabilites were discovered in Centreon-Web in december 2018 and fixed in early 2019 over the course of two minor releases on both branches in versions 2827/2828 and 18104/18105 documentationcentreoncom/docs/centreon/en/late ...
Hello, My advisory posted yesterday contains a problematic typo: CVE-2019-17017 should have been written CVE-2019-17107 Sorry for the inconvenience it may have caused Here is the corrected context: Original advisory follows Guillaume Quéré ...