Critical severity9.8NVD Advisory· Published Jun 25, 2018· Updated Jun 17, 2026
CVE-2018-11589
CVE-2018-11589
Description
Multiple SQL injection vulnerabilities in Centreon 3.4.6 including Centreon Web 2.8.23 allow attacks via the searchU parameter in viewLogs.php, the id parameter in GetXmlHost.php, the chartId parameter in ExportCSVServiceData.php, the searchCurve parameter in listComponentTemplates.php, or the host_id parameter in makeXML_ListMetrics.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
7- github.com/centreon/centreon/pull/6250nvdPatchThird Party Advisory
- github.com/centreon/centreon/pull/6251nvdPatchThird Party Advisory
- github.com/centreon/centreon/pull/6255nvdPatchThird Party Advisory
- github.com/centreon/centreon/pull/6256nvdPatchThird Party Advisory
- github.com/centreon/centreon/pull/6257nvdPatchThird Party Advisory
- documentation.centreon.com/docs/centreon/en/latest/release_notes/centreon-2.8/centreon-2.8.24.htmlnvdRelease NotesVendor Advisory
- github.com/centreon/centreon/releasesnvdThird Party Advisory
News mentions
0No linked articles in our index yet.