Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-4646


Incorrect Authorization vulnerability in Centreon web (API Token creation form modules) allows Privilege Escalation.This issue affects web: from 24.04.0 before 24.04.10, from 24.10.0 before 24.10.4.


Published

2025-05-13T10:15:29.113

Last Modified

2025-10-22T14:13:47.513

Status

Analyzed

Source

bd4443e6-1eef-43f3-9886-25fc9ceeaae7

Severity

CVSSv3.1: 7.2 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-863

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application centreon centreon_web < 24.04.10 Yes
Application centreon centreon_web < 24.10.4 Yes

References