First published: Mon Feb 21 2022(Updated: )
A XSS vulnerability exist in Pandora FMS version 756 and below, that allows an attacker to perform javascript code executions via the service name field.
Credit: security@pandorafms.com
Affected Software | Affected Version | How to fix |
---|---|---|
Artica Pandora FMS | <757 |
This vulnerability has been solved in the 757 version of Pandora FMS.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-46678.
The severity of CVE-2021-46678 is medium.
The affected software is Pandora FMS version 756 and below.
An attacker can exploit CVE-2021-46678 by performing javascript code executions via the service name field.
Yes, you can find references for CVE-2021-46678 at the following links: [link1](https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/), [link2](https://www.incibe.es/en/cve-assignment-publication/coordinated-cves).