Description
Missing Authentication for Critical Function vulnerability in Centreon Infra Monitoring centreon-awie (Awie import module) allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Infra Monitoring: from 25.10.0 before 25.10.2, from 24.10.0 before 24.10.3, from 24.04.0 before 24.04.3.
Problem types
CWE-306 Missing Authentication for Critical Function
Product status
25.10.0 (custom) before 25.10.2
24.10.0 (custom) before 24.10.3
24.04.0 (custom) before 24.04.3
Credits
marceloQJ
References
github.com/centreon/centreon/releases
thewatch.centreon.com/...entreon-awie-critical-severity-5357