CNNVD-202601-885 Information

CNNVD ID

CNNVD-202601-885

CVE-2025-12511

  • CNNVD Published: 2026-01-05

Description (Chinese)

Centreon是法国Centreon公司的一套开源的系统监控工具 。该产品主要提供对网络、系统和应用程序等资源的监控功能。 Centreon 25.10.1之前版本、24.10.4之前版本和24.04.8之前版本存在安全漏洞,该漏洞源于DSM扩展配置模块输入中和不当,可能导致存储型跨站脚本攻击。

Description (English)

Centreon is an open-source system monitoring tool for Centreon in France. The product mainly provides a monitoring function for resources such as networks, systems and applications. Pre-Centreon 25.10.1, pre-24.10.4 and pre-24.04.8 have a security loophole, which stems from the inaccuracy of the DSM extended configuration module input and may result in a storage-type cross-site script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Centreon

Published

2026-01-05

Last Modified

2026-02-24

References

https://github.com/centreon/centreon/releases https://access.redhat.com/security/cve/cve-2025-12511

Patch

https://github.com/centreon/centreon/releases

Share on: