First published: Fri Aug 05 2022(Updated: )
A XSS vulnerability exist in Pandora FMS version 756 and below, that allows an attacker to perform javascript code executions via the transactional maps name field.
Credit: security@pandorafms.com
Affected Software | Affected Version | How to fix |
---|---|---|
Artica Pandora FMS | <757 |
This vulnerability has been solved in the 757 version of Pandora FMS.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for the XSS vulnerability in Pandora FMS is CVE-2021-46676.
The severity of CVE-2021-46676 is medium, with a severity value of 6.1.
Pandora FMS version 756 and below are affected by CVE-2021-46676.
An attacker can exploit CVE-2021-46676 by performing javascript code executions via the transactional maps name field.
Yes, you can find references for CVE-2021-46676 at the following links: [Link 1](https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/) and [Link 2](https://www.incibe.es/en/cve-assignment-publication/coordinated-cves).