Centreon.command_line.path.OS.Command.Injection

description-logoDescription

This indicates an attack attempt against an OS Command Injection vulnerability in Centreon.
The vulnerability is due to insufficient sanitizing of user supplied inputs in the application. A remote attacker may be able to exploit this to execute arbitrary command within the context of the application.

affected-products-logoAffected Products

Centreon before 2.8.30
Centreon 18.10.x before 18.10.8
Centreon 19.04.x before 19.04.5
Centreon 19.10.x before 19.10.2

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Upgrade to the latest version available from the website.
https://github.com/centreon/

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-02-24 15.782 Default_action:pass:drop
2020-02-13 15.777