HIGH8.5
GHSA-c4fj-3wqq-g9c9
Centreon Command Injection
Quick fix
GHSA-c4fj-3wqq-g9c9 — centreon/centreon: upgrade to the fixed version with the command below.
composer require centreon/centreon:^2.8.28Details
The `escape_command` function in `include/Administration/corePerformance/getStats.php` in Centreon (formerly Merethis Centreon) 2.5.4 and earlier (offending file deleted in Centreon 19.10.0) uses an incorrect regular expression, which allows remote authenticated users to execute arbitrary commands via shell metacharacters in the `ns_id` parameter.
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/centreon/centreon
Introduced in:
0Fixed in: 2.8.28Fix
composer require centreon/centreon:^2.8.28References
- https://nvd.nist.gov/vuln/detail/CVE-2015-1561[ADVISORY]
- https://github.com/centreon/centreon-archived/pull/7083[WEB]
- https://github.com/centreon/centreon-archived/pull/7271[WEB]
- https://github.com/centreon/centreon-archived/commit/387dffdd051dbc7a234e1138a9d06f3089bb55bb[WEB]
- https://github.com/centreon/centreon-archived/commit/a78c60aad6fd5af9b51a6d5de5d65560ea37a98a[WEB]
- https://forge.centreon.com/projects/centreon/repository/revisions/387dffdd051dbc7a234e1138a9d06f3089bb55bb[WEB]
- https://github.com/centreon/centreon-archived[PACKAGE]
- https://web.archive.org/web/20201125112637/http://www.securityfocus.com/archive/1/535961/100/0/threaded[WEB]
- http://packetstormsecurity.com/files/132607/Merethis-Centreon-2.5.4-SQL-Injection-Remote-Command-Execution.html[WEB]