Directory traversal vulnerability in include/doc/get_image.php in Centreon 1.4.2.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter.
| Software | From | Fixed in |
|---|---|---|
centreon / centreon
|
1.4.2 | 1.4.2.x |
centreon / centreon
|
1.4.2.2 | 1.4.2.2.x |
centreon / centreon
|
- | 1.4.2.3.x |
centreon / centreon
|
1.4.2.1 | 1.4.2.1.x |
centreon / centreon
|
1.4.1 | 1.4.1.x |
centreon / centreon
|
1.4 | 1.4.x |