SQL Injection Risk in Centreon Web for Specific Versions
CVE-2025-4650
7.2HIGH
What is CVE-2025-4650?
A SQL Injection vulnerability exists in Centreon Web that allows users with high privileges to exploit the system through the Meta Service indicator page. This issue is triggered by improper neutralization of special elements in SQL commands, potentially compromising the integrity of the database. Users are advised to update to secure versions to mitigate this risk.
Affected Version(s)
web 24.10.0 < 24.10.9
web 24.04.0 < 24.04.16
web 23.10.0 < 23.10.26