Centreon version 20.10.2 is affected by a cross-site scripting (XSS) vulnerability. The dep_description (Dependency Description) and dep_name (Dependency Name) parameters are vulnerable to stored XSS. A user has to log in and go to the Configuration > Notifications > Hosts page.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-05-26T10:20:38
Updated: 2024-08-03T21:26:10.678Z
Reserved: 2021-02-25T00:00:00
Link: CVE-2021-27676
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-05-26T11:15:08.890
Modified: 2024-11-21T05:58:25.257
Link: CVE-2021-27676
Redhat
No data.