First published: Sat Jun 29 2019(Updated: )
Artica Pandora FMS 7.0 NG before 735 suffers from local privilege escalation due to improper permissions on C:\PandoraFMS and its sub-folders, allowing standard users to create new files. Moreover, the Apache service httpd.exe will try to execute cmd.exe from C:\PandoraFMS (the current directory) as NT AUTHORITY\SYSTEM upon web requests to the portal. This will effectively allow non-privileged users to escalate privileges to NT AUTHORITY\SYSTEM.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Artica Pandora FMS | <7.0_ng_735 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-13035.
The severity of CVE-2019-13035 is high.
The affected software is Pandora FMS version 7.0 NG up to 735.
CVE-2019-13035 allows standard users to create new files and execute cmd.exe with improper permissions, leading to local privilege escalation.
Yes, it is recommended to update to a fixed version of Pandora FMS.