CVE-2018-19311: Centreon
Medium severity, CVSS 5.4. EPSS: 1.2% chance of exploitation in the next 30 days.
Centreon 3.4.x (fixed in Centreon 18.10.0) allows XSS via the Service field to the main.php?p=20201 URI, as demonstrated by the "Monitoring > Status Details > Services" screen.
Affected products
- Centreon Centreon: from 3.4.0, up to and including 3.4.9
Published 2018-11-16. Last modified 2026-06-17.