CVE-2025-15029: SQL Injection in Centreon Infra Monitoring

Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in Centreon Infra Monitoring (Awie export modules) allows SQL Injection to unauthenticated user.

This issue affects Infra Monitoring: from 25.10.0 before 25.10.2, from 24.10.0 before 24.10.3, from 24.04.0 before 24.04

CVECVE-2025-15029
CVSSv39.8 Critical
Published Date5 Jan 2026
Impact device25.10.0 before 25.10.2
24.10.0 before24.10.3
24.04.4 before 24.04
ExplotationYes,
Reporter
: marceloQJ

Solution : Update your

Centreon AWIE 25.10.2

Centreon AWIE 24.10.3

Centreon AWIE 24.04.3
 


Comments

Leave a Reply

Your email address will not be published. Required fields are marked *