CVE-2019-13035: High severity pandora fms vulnerability
Artica Pandora FMS 7.0 NG before 735 suffers from local privilege escalation due to improper permissions on C:\PandoraFMS and its sub-folders, allowing standard users to create new files. Moreover, the Apache service httpd.exe will try to execute cmd.exe from C:\PandoraFMS (the current directory) as NT AUTHORITY\SYSTEM upon web requests to the portal. This will effectively allow non-privileged users to escalate privileges to NT AUTHORITY\SYSTEM.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2019-13035.
What is the severity of CVE-2019-13035?
The severity of CVE-2019-13035 is high.
What is the affected software?
The affected software is Pandora FMS version 7.0 NG up to 735.
What is the impact of CVE-2019-13035?
CVE-2019-13035 allows standard users to create new files and execute cmd.exe with improper permissions, leading to local privilege escalation.
Is there a fix available for CVE-2019-13035?
Yes, it is recommended to update to a fixed version of Pandora FMS.