Required CVE Record Information
Description
getStats.php in Centreon Web before 2.8.28 allows authenticated attackers to execute arbitrary code via the ns_id parameter.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- https://github.com/centreon/centreon/pull/7083 x_transferred
- https://www.openwall.com/lists/oss-security/2019/10/08/1 x_transferred
- https://github.com/centreon/centreon/pull/7271 x_transferred
- openwall.com: [oss-security] 20191009 Re: Multiple vulnerabilities in Centreon-Web and Centreon-VM mailing-listx_transferred