CVE-2019-17647: Centreon
Critical severity, CVSS 9.8. EPSS: 1.8% chance of exploitation in the next 30 days.
An issue was discovered in Centreon before 2.8.30, 18.10.8, 19.04.5, and 19.10.2. SQL Injection exists via the include/monitoring/status/Hosts/xml/hostXML.php instance parameter.
Affected products
- Centreon Centreon: before 2.8.30 (fixed in 2.8.30); from 18.0.0, before 18.10.8 (fixed in 18.10.8); from 19.04.0, before 19.04.5 (fixed in 19.04.5); from 19.10.0, before 19.10.2 (fixed in 19.10.2)
Published 2020-03-05. Last modified 2026-06-17.