SQL Injection Vulnerability in Centreon web Configuration Modules
CVE-2025-3872
7.2HIGH
What is CVE-2025-3872?
An SQL Injection vulnerability in the Centreon web application allows attackers with elevated privileges to intercept and manipulate the contact form requests. By altering the request payload, a user can gain unauthorized administrator access, potentially compromising the entire application environment. This vulnerability affects specific versions of Centreon, emphasizing the need for immediate updates and security measures to protect sensitive data.
Affected Version(s)
Centreon 22.10.0 < 22.10.28
Centreon 23.04.0 < 23.04.25
Centreon 23.10.0 < 23.10.20
