CVE-2021-46676: Vulnerability XSS in Transaction Map name field
Published Aug 5, 2022
·Updated
A XSS vulnerability exist in Pandora FMS version 756 and below, that allows an attacker to perform javascript code executions via the transactional maps name field.
Affected Software
1 affected component
PandoraFMS Pandora FMS<757
Remediation
Information
This vulnerability has been solved in the 757 version of Pandora FMS.
Event History
Aug 5, 2022
CVE Published
via MITRE·03:25 PM
Data Sourced
via MITRE·03:25 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for the XSS vulnerability in Pandora FMS?
The vulnerability ID for the XSS vulnerability in Pandora FMS is CVE-2021-46676.
2
What is the severity of CVE-2021-46676?
The severity of CVE-2021-46676 is medium, with a severity value of 6.1.
3
Which version of Pandora FMS is affected by CVE-2021-46676?
Pandora FMS version 756 and below are affected by CVE-2021-46676.
4
How can an attacker exploit CVE-2021-46676?
An attacker can exploit CVE-2021-46676 by performing javascript code executions via the transactional maps name field.
5
Are there any references for CVE-2021-46676?
Yes, you can find references for CVE-2021-46676 at the following links: [Link 1](https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/) and [Link 2](https://www.incibe.es/en/cve-assignment-publication/coordinated-cves).