CVE-2024-39841: Centreon Web

High severity, CVSS 8.8. EPSS: 1.1% chance of exploitation in the next 30 days.

A SQL Injection vulnerability exists in the service configuration functionality in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.04.19, and 22.10.x before 22.10.23.

Affected products

  • Centreon Centreon Web: from 22.10.0, before 22.10.23 (fixed in 22.10.23); from 23.04.0, before 23.04.19 (fixed in 23.04.19); from 23.10.0, before 23.10.13 (fixed in 23.10.13); from 24.04.0, before 24.04.3 (fixed in 24.04.3)

Published 2024-08-23. Last modified 2026-06-17.