CVE-2019-17644: Centreon
High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.
An issue was discovered in Centreon before 2.8-30, 18.10-8, 19.04-5, and 19.10-2.. It provides sensitive information via an unauthenticated direct request for include/configuration/configObject/host/refreshMacroAjax.php.
Affected products
- Centreon Centreon: before 2.8.30 (fixed in 2.8.30); from 2.8.4, before 18.10.8 (fixed in 18.10.8); from 19.0.0, before 19.04.5 (fixed in 19.04.5); from 19.04.6, before 19.10.2 (fixed in 19.10.2)
Published 2020-03-04. Last modified 2026-06-17.