CVE-2018-19271: Centreon

High severity, CVSS 8.8. EPSS: 2.1% chance of exploitation in the next 30 days.

Centreon 3.4.x (fixed in Centreon 18.10.0 and Centreon web 2.8.28) allows SQL Injection via the main.php searchH parameter.

Affected products

  • Centreon Centreon: version 3.4.1 only; version 3.4.6 only

Published 2018-11-14. Last modified 2026-06-17.