First published: Fri Aug 05 2022(Updated: )
A XSS vulnerability exist in Pandora FMS version 756 and below, that allows an attacker to perform javascript code executions via the event filter name field.
Credit: security@pandorafms.com
Affected Software | Affected Version | How to fix |
---|---|---|
Artica Pandora FMS | <757 |
This vulnerability has been solved in the 757 version of Pandora FMS.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this XSS vulnerability is CVE-2021-46677.
The severity of CVE-2021-46677 is medium.
Pandora FMS version 756 and below are affected by CVE-2021-46677.
An attacker can perform javascript code executions via the event filter name field using CVE-2021-46677.
Yes, you can find references for CVE-2021-46677 at the following links: [Link1](https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/), [Link2](https://www.incibe.es/en/cve-assignment-publication/coordinated-cves)