CVE-2011-4431

Merethis Centreon < 2.3.2 - Authenticated Path Traversal via Command Name Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2011-4431. PoCs published by Christophe de la Fuente.

AI-analyzed exploit summary This exploit demonstrates a remote command injection vulnerability in Centreon via a crafted URL. The PoC leverages path traversal and command injection to execute arbitrary commands (e.g., cat /etc/passwd) without authentication.

Description

Directory traversal vulnerability in main.php in Merethis Centreon before 2.3.2 allows remote authenticated users to execute arbitrary commands via a .. (dot dot) in the command_name parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Christophe de la Fuente · textwebappsphp
https://www.exploit-db.com/exploits/36293

This exploit demonstrates a remote command injection vulnerability in Centreon via a crafted URL. The PoC leverages path traversal and command injection to execute arbitrary commands (e.g., cat /etc/passwd) without authentication.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Centreon 2.3.1
No auth needed
Prerequisites: Network access to the target Centreon instance
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/8530

Scores

EPSS 0.0684
EPSS Percentile 93.2%

Details

CWE
CWE-22
Status published
Products (32)
merethis/centreon 1.4
merethis/centreon 1.4.1
merethis/centreon 1.4.2
merethis/centreon 1.4.2.1
merethis/centreon 1.4.2.2
merethis/centreon 1.4.2.3
merethis/centreon 1.4.2.4
merethis/centreon 1.4.2.5
merethis/centreon 1.4.2.6
merethis/centreon 1.4.2.7
... and 22 more
Published Nov 10, 2011
Tracked Since Feb 18, 2026