Cross-Site Scripting Vulnerability in Centreon Infra Monitoring
CVE-2025-8459
What is CVE-2025-8459?
A Cross-Site Scripting (XSS) vulnerability exists in Centreon Infra Monitoring that allows an attacker to store malicious scripts in the monitoring system. This vulnerability primarily affects the recurrent downtime scheduler modules. The affected versions include Infra Monitoring versions 24.10.0 up to 24.10.12, 24.04.0 up to 24.04.17, and 23.10.0 up to 23.10.27. When exploited, this vulnerability can lead to significant security risks, including unauthorized access and data breaches, making it essential for users to apply the necessary patches and upgrades to protect their infrastructure.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Infra Monitoring 24.10.0 < 24.10.13
Infra Monitoring 24.04.0 < 24.04.18
Infra Monitoring 23.10.0 < 23.10.28
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
