CVE-2024-45756: Centreon
High severity, CVSS 7.2. EPSS: 0.5% chance of exploitation in the next 30 days.
An issue was discovered in Centreon centreon-open-tickets 24.10.x before 24.10.0, 24.04.x before 24.04.2, 23.10.x before 23.10.1, 23.04.x before 23.04.3, and 22.10.x before 22.10.2. SQL injection can occur in the form to create a ticket. Exploitation is only accessible to authenticated users with high-privileged access.
Affected products
- Centreon Centreon: from 24.04.0, before 24.04.2 (fixed in 24.04.2); from 23.10.0, before 23.10.1 (fixed in 23.10.1); from 23.04.0, before 23.04.3 (fixed in 23.04.3); from 22.10.0, before 22.10.2 (fixed in 22.10.2); from 24.10, before 24.10.0 (fixed in 24.10.0)
Published 2024-11-25. Last modified 2026-06-17.