Cross-site Scripting Vulnerability in Centreon Infra Monitoring by Centreon
CVE-2025-13056
6.8MEDIUM
What is CVE-2025-13056?
A Cross-site Scripting (XSS) vulnerability exists in Centreon Infra Monitoring, specifically affecting the Administration ACL menu configuration modules. This flaw allows attackers to execute stored XSS attacks, targeting users with high privileges within the application. The vulnerability can be exploited by delivering malicious scripts to users, compromising their accounts and data. It is crucial for organizations using affected versions to implement necessary security measures and updates promptly.
Affected Version(s)
Infra Monitoring 25.10.0 < 25.10.2
Infra Monitoring 24.10.0 < 24.10.15
Infra Monitoring 24.04.0 < 24.04.19
