Vulnerabilities > Centreon > Centreon VM

DATE CVE VULNERABILITY TITLE RISK
2019-10-08 CVE-2019-17104 Reliance on Cookies without Validation and Integrity Checking vulnerability in Centreon VM 19.04.2/19.04.3
In Centreon VM through 19.04.3, the cookie configuration within the Apache HTTP Server does not protect against theft because the HTTPOnly flag is not set.
network
low complexity
centreon CWE-565
7.5
2019-10-08 CVE-2018-21025 Improper Privilege Management vulnerability in Centreon VM 19.04.2/19.04.3
In Centreon VM through 19.04.3, centreon-backup.pl allows attackers to become root via a crafted script, due to incorrect rights of sourced configuration files.
network
low complexity
centreon CWE-269
critical
9.8