{ "schema_version": "1.4.0", "id": "GHSA-jv8x-mwvf-3j5w", "modified": "2022-05-24T17:10:15Z", "published": "2022-05-24T17:10:15Z", "aliases": [ "CVE-2019-17647" ], "details": "An issue was discovered in Centreon before 2.8.30, 18.10.8, 19.04.5, and 19.10.2. SQL Injection exists via the include/monitoring/status/Hosts/xml/hostXML.php instance parameter.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-17647" }, { "type": "WEB", "url": "https://github.com/centreon/centreon/pull/8063" }, { "type": "WEB", "url": "https://documentation.centreon.com/docs/centreon/en/latest/release_notes/centreon-18.10.html#centreon-web-18-10-8" }, { "type": "WEB", "url": "https://documentation.centreon.com/docs/centreon/en/latest/release_notes/centreon-19.04.html#centreon-web-19-04-5" }, { "type": "WEB", "url": "https://documentation.centreon.com/docs/centreon/en/latest/release_notes/centreon-19.10.html#centreon-web-19-10-2" }, { "type": "WEB", "url": "https://documentation.centreon.com/docs/centreon/en/latest/release_notes/centreon-19.10/index.html" }, { "type": "WEB", "url": "https://documentation.centreon.com/docs/centreon/en/latest/release_notes/centreon-2.8.html#centreon-web-2-8-30" } ], "database_specific": { "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2020-03-05T20:15:00Z" } }