First published: Mon Mar 23 2020(Updated: )
In Artica Pandora FMS through 7.42, an unauthenticated attacker can read the chat history. The file is in JSON format and it contains user names, user IDs, private messages, and timestamps.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Artica Pandora FMS | <=7.42 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-8497 is a vulnerability in Artica Pandora FMS through version 7.42 that allows an unauthenticated attacker to read the chat history.
The severity of CVE-2020-8497 is medium with a CVSS score of 5.3.
An attacker can exploit CVE-2020-8497 by accessing the JSON file containing user names, user IDs, private messages, and timestamps.
No, CVE-2020-8497 can be exploited by an unauthenticated attacker.
Yes, updating Artica Pandora FMS to version 7.42 or later will fix the vulnerability.