← volver
CVE-2022-2059

Stored Cross Site-Scripting in Agent Manager

CVSS 3.5 LOWEPSS 0.4%CWE-79
In Pandora FMS v7.0NG.761 and below, in the agent creation section, the alias parameter is vulnerable to a Stored Cross Site-Scripting. This vulnerability can be exploited by an attacker with administrator privileges logged in the system.
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:N
Productos afectados
Artica PFMS · Pandora FMS

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →