VYPR
Critical severity9.8NVD Advisory· Published Jun 25, 2018· Updated Jun 17, 2026

CVE-2018-11589

CVE-2018-11589

Description

Multiple SQL injection vulnerabilities in Centreon 3.4.6 including Centreon Web 2.8.23 allow attacks via the searchU parameter in viewLogs.php, the id parameter in GetXmlHost.php, the chartId parameter in ExportCSVServiceData.php, the searchCurve parameter in listComponentTemplates.php, or the host_id parameter in makeXML_ListMetrics.php.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Centreon/Centreoninferred2 versions
    <=2.8.23+ 1 more
    • (no CPE)range: <=2.8.23
    • (no CPE)range: =3.4.6

Patches

Vulnerability mechanics

References

7

News mentions

0

No linked articles in our index yet.