This repository has been archived by the owner on Dec 13, 2022. It is now read-only.
20.04.13
20.04.13
May 10, 2021
Bugfixes
- [Administration] Cannot list Pollers in Centreon Engine statistics
- [Configuration] Configuration output can lead to an empty broker configuration
- [Configuration] Hosts/services templates become simple hosts/services
- [Configuration] Wrong number of services/pages to display
- [Monitoring] Cancelled BA downtime from Downtime menu
- [Purge] Script can't drop several partitions
Security fixes
- [Administration] User can install or delete modules with no ACL rights
- [Configuration] Cross-site Scripting (XSS) Stored/Persistent in Dependency/Notification form
- [Configuration] SQL injection in user additional information
- [Configuration] Stored XSS in host Alias for host form
- [Core] Predictable anti-CSRF token
- [Graph] SQL Injection on graph periods
- [Graph] SQL Injection on graph split
- [Lib] Update centreon vulnerable packages
- [Resources Status / Service Details] Passwords are displayed in command line
- [Resources Status / Service Details] Passwords field for EXTRAOPTIONS is not hidden in command line