CVE-2020-13855: Malicious File Upload
Published Jun 11, 2020
·Updated
Artica Pandora FMS 7.44 allows arbitrary file upload (leading to remote command execution) via the File Repository Manager feature.
Affected Software
1 affected component
PandoraFMS Pandora FMS=7.44
Event History
Jun 11, 2020
CVE Published
via MITRE·02:13 AM
Data Sourced
via MITRE·02:13 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for Artica Pandora FMS?
The vulnerability ID for Artica Pandora FMS is CVE-2020-13855.
2
What is the severity of CVE-2020-13855?
The severity of CVE-2020-13855 is critical (7.2).
3
What is the affected version of Artica Pandora FMS?
The affected version of Artica Pandora FMS is 7.44.
4
How does the vulnerability in Artica Pandora FMS allow arbitrary file upload?
The vulnerability in Artica Pandora FMS allows arbitrary file upload through the File Repository Manager feature, which can lead to remote command execution.
5
Is there a fix available for CVE-2020-13855?
Currently, there is no information available regarding a fix for CVE-2020-13855. It is recommended to follow the vendor's advisories and updates for mitigation steps or patches.