Arbitrary Code Execution in Centreon VM by Centreon
CVE-2018-21025
9.8CRITICAL
What is CVE-2018-21025?
In certain versions of Centreon VM, specifically up to 19.04.3, a critical vulnerability exists in the script centreon-backup.pl, allowing an attacker to gain root privileges. This is due to improper configuration rights on sourced configuration files, enabling malicious users to execute arbitrary scripts. Security measures must be adopted to mitigate the risks of unauthorized access.
