Описание
OS Command Injection in Centreon
/graphStatus/displayServiceStatus.php in Centreon 19.10.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the RRDdatabase_path parameter.
Пакеты
Наименование
centreon/centreon
composer
Затронутые версииВерсия исправления
<= 19.10.8
20.04.0
Связанные уязвимости
CVSS3: 8.8
nvd
больше 4 лет назад
/graphStatus/displayServiceStatus.php in Centreon 19.10.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the RRDdatabase_path parameter.