Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Centreon BAM (Boolean KPi Listing modules) allows SQL Injection.
This page is only accessible to authenticated users with high privileges.
This issue affects Centreon BAM: from 24.10 before 24.10.1, from 24.04 before 24.04.5, from 23.10 before 23.10.10, from 23.04 before 23.04.10.
Metrics
Affected Vendors & Products
References
History
Tue, 22 Apr 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References | ||
Metrics |
ssvc
|
Tue, 22 Apr 2025 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Centreon BAM (Boolean KPi Listing modules) allows SQL Injection. This page is only accessible to authenticated users with high privileges. This issue affects Centreon BAM: from 24.10 before 24.10.1, from 24.04 before 24.04.5, from 23.10 before 23.10.10, from 23.04 before 23.04.10. | |
Title | SQL Injection in Centreon BAM boolean KPI listing | |
Weaknesses | CWE-89 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Centreon
Published: 2025-04-22T15:16:24.312Z
Updated: 2025-04-22T16:09:54.998Z
Reserved: 2025-04-17T14:36:19.597Z
Link: CVE-2025-3767

Updated: 2025-04-22T16:03:08.642Z

Status : Awaiting Analysis
Published: 2025-04-22T16:15:45.487
Modified: 2025-04-23T14:08:13.383
Link: CVE-2025-3767

No data.