EIP-2026-105780
PRE-CVECentreon 19.10.5 - 'Pollers' Remote Command Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-105780. PoCs published by Omri Baso.
AI-analyzed exploit summary This exploit demonstrates a Remote Command Execution (RCE) vulnerability in Centreon 19.10.5 by leveraging unsanitized user input in the 'Pollers' configuration. The attacker creates a malicious command that spawns a reverse shell via a TCP connection, leading to full server takeover with 'apache' user privileges.
Description
Centreon 19.10.5 - 'Pollers' Remote Command Execution
Exploits (1)
This exploit demonstrates a Remote Command Execution (RCE) vulnerability in Centreon 19.10.5 by leveraging unsanitized user input in the 'Pollers' configuration. The attacker creates a malicious command that spawns a reverse shell via a TCP connection, leading to full server takeover with 'apache' user privileges.