CVE-2025-3767
Severity CVSS v4.0:
Pending analysis
Type:
CWE-89
SQL Injection
Publication date:
22/04/2025
Last modified:
23/04/2025
Description
Improper Neutralization of Special Elements used in an SQL Command (&#39;SQL Injection&#39;) vulnerability in Centreon BAM (Boolean KPi Listing modules) allows SQL Injection.<br />
<br />
<br />
This page is only accessible to authenticated users with high privileges.<br />
<br />
This issue affects Centreon BAM: from 24.10 before 24.10.1, from 24.04 before 24.04.5, from 23.10 before 23.10.10, from 23.04 before 23.04.10.
Impact
Base Score 3.x
7.20
Severity 3.x
HIGH