Missing Authentication for Critical Function vulnerability in Centreon Infra Monitoring centreon-awie (Awie import module) allows Accessing Functionality Not Properly Constrained by ACLs.
This issue affects Infra Monitoring: from 25.10.0 before 25.10.2, from 24.10.0 before 24.10.3, from 24.04.0 before 24.04.3.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Weakness Type (CWE)
Vulnerable Products 3
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Centreon Awie
cpe:2.3:a:centreon:awie:*:*:*:*:*:*:*:*
|
24.04.0
|
24.04.3
|
|
Centreon Awie
cpe:2.3:a:centreon:awie:*:*:*:*:*:*:*:*
|
24.10.0
|
24.10.3
|
|
Centreon Awie
cpe:2.3:a:centreon:awie:*:*:*:*:*:*:*:*
|
25.10.0
|
25.10.2
|