A SQL injection vulnerability in reporting export in Centreon prior to 20.04.14, 20.10.8, and 21.04.2 allows remote authenticated (but low-privileged) malicious users to execute arbitrary SQL commands via the include/reporting/dashboard/csvExport/csv_HostGroupLogs.php start and end parameters.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
centreon centreon |