Description
A XSS vulnerability exist in Pandora FMS version 756 and below, that allows an attacker to perform javascript code executions via module massive operation name field.
References
https://www.incibe.es/en/cve-assignment-publication/coordinated-cves
Third Party Advisory
https://www.incibe.es/en/cve-assignment-publication/coordinated-cves
Third Party Advisory
CVSS impact metrics
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:L
4 · Medium
Information
Source identifier
Vulnerability status
Modified
Published
2022-08-05T14:15:11.300Z
3 years agoLast modified
2024-11-21T05:34:35.337Z
1 year ago