{"id":"CVE-2020-10945","aliases":[],"url":"https://o3.security/vulnerability/CVE-2020-10945","summary":"Centreon Sensitive Data Exposure vulnerability","details":"Centreon before 19.10.7 exposes Session IDs in server responses.","published":"2022-05-24T17:18:43Z","modified":"2026-09-10T03:49:23.198628097Z","cvss":{"score":4.3,"severity":"MEDIUM","vector":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"},"epss":{"score":0.00597,"percentile":0.47053,"asOf":"2026-09-17"},"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Packagist","name":"centreon/centreon","fixedVersion":"19.10.7"},{"ecosystem":"Packagist","name":"centreon/centreon","fixedVersion":"19.04.10"},{"ecosystem":"Packagist","name":"centreon/centreon","fixedVersion":"18.10.11"},{"ecosystem":"Packagist","name":"centreon/centreon","fixedVersion":"2.8.32"}],"fix":{"url":"https://github.com/centreon/centreon-archived/pull/8291","label":"centreon/centreon-archived#8291"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2020-10945"},{"type":"WEB","url":"https://github.com/centreon/centreon-archived/pull/8291"},{"type":"WEB","url":"https://github.com/centreon/centreon-archived/commit/02a3248602ce194fbb098af34be4652565db2468"},{"type":"WEB","url":"https://github.com/centreon/centreon-archived/commit/1c14a8ee07225836bdd2ca480e47a63070a11bb9"},{"type":"WEB","url":"https://github.com/centreon/centreon-archived/commit/afa0ee6d43d22860ae435163559912696569fc2f"},{"type":"WEB","url":"https://github.com/centreon/centreon-archived/commit/fbee38536960eecaf52eda2bf31b90859c018b66"},{"type":"PACKAGE","url":"https://github.com/centreon/centreon"},{"type":"WEB","url":"https://web.archive.org/web/20200625084841/https://sysdream.com/news/lab/2020-05-13-cve-2020-10945-centreon-session-id-exposure"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-09-10T03:49:23.198628097Z"}}