216.73.216.36

CVE-2025-12514

· Published 22/12/2025 11:15 · Modified 23/12/2025 14:51

Labels: CVE-2025-12514 2025-12-22CVE-2025-12514bd4443e6-1eef-43f3-9886-25fc9ceeaae7

Essential information

Published
22/12/2025 11:15
Modified
23/12/2025 14:51
Author
Creator
CVSS
7.2 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Centreon Infra Monitoring - Open-tickets (Notification rules configuration parameters, Open tickets modules) allows SQL Injection to user with elevated privileges.This issue affects Infra Monitoring - Open-tickets: from 24.10.0 before 24.10.5, from 24.04.0 before 24.04.5, from 23.10.0 before 23.10.4.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
bd4443e6-1eef-43f3-9886-25fc9ceeaae7
NVD
View on NVD

References