CVE-2022-39988

Source
https://cve.org/CVERecord?id=CVE-2022-39988
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-39988.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-39988
Published
2022-10-06T00:00:00Z
Modified
2026-08-07T11:31:17.700239216Z
Summary
[none]
Details

A cross-site scripting (XSS) vulnerability in Centreon 22.04.0 allows attackers to execute arbitrary web script or HTML via a crafted payload injected into the Service>Templates service_alias parameter.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/39xxx/CVE-2022-39988.json",
    "cna_assigner": "mitre"
}
References

Affected packages

Git / github.com/centreon/centreon

Affected ranges

Type
GIT
Repo
https://github.com/centreon/centreon
Events
Database specific
Show details
{
    "cpe": "cpe:2.3:a:centreon:centreon:22.04.0:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "22.04.0"
        },
        {
            "last_affected": "22.04.0"
        }
    ],
    "source": "CPE_STRING"
}

Affected versions

22.*
22.04.0
centreon-awie-22.*
centreon-awie-22.04.0
centreon-dsm-22.*
centreon-dsm-22.04.0
centreon-gorgone-22.*
centreon-gorgone-22.04.1
centreon-ha-22.*
centreon-ha-22.04.0
centreon-open-tickets-22.*
centreon-open-tickets-22.04.0
centreon-web-22.*
centreon-web-22.04.7
centreon-widget-engine-status-22.*
centreon-widget-engine-status-22.04.0
centreon-widget-global-health-22.*
centreon-widget-global-health-22.04.0
centreon-widget-graph-monitoring-22.*
centreon-widget-graph-monitoring-22.04.0
centreon-widget-grid-map-22.*
centreon-widget-grid-map-22.04.0
centreon-widget-host-monitoring-22.*
centreon-widget-host-monitoring-22.04.0
centreon-widget-hostgroup-monitoring-22.*
centreon-widget-hostgroup-monitoring-22.04.0
centreon-widget-httploader-22.*
centreon-widget-httploader-22.04.0
centreon-widget-live-top10-cpu-usage-22.*
centreon-widget-live-top10-cpu-usage-22.04.0
centreon-widget-live-top10-memory-usage-22.*
centreon-widget-live-top10-memory-usage-22.04.0
centreon-widget-ntopng-listing-22.*
centreon-widget-ntopng-listing-22.04.0
centreon-widget-service-monitoring-22.*
centreon-widget-service-monitoring-22.04.0
centreon-widget-servicegroup-monitoring-22.*
centreon-widget-servicegroup-monitoring-22.04.0
centreon-widget-single-metric-22.*
centreon-widget-single-metric-22.04.0
centreon-widget-tactical-overview-22.*
centreon-widget-tactical-overview-22.04.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-39988.json"