Description
Incorrect Default Permissions vulnerability in Centreon Infra Monitoring (MBI modules) allows Embedding Scripts within Scripts by CentreonBI user account on the MBI server This issue affects Infra Monitoring: from 24.10.0 before 24.10.6, from 24.04.0 before 24.04.9, from 23.10.0 before 23.10.15.
Problem types
CWE-276 Incorrect Default Permissions
Product status
24.10.0 (custom) before 24.10.6
24.04.0 (custom) before 24.04.9
23.10.0 (custom) before 23.10.15
Credits
Stago
References
github.com/centreon/centreon/releases
thewatch.centreon.com/...432-centreon-mbi-high-severity-5180