First published: Mon Feb 21 2022(Updated: )
A XSS vulnerability exist in Pandora FMS version 756 and below, that allows an attacker to perform javascript code executions via service elements.
Credit: security@pandorafms.com
Affected Software | Affected Version | How to fix |
---|---|---|
Artica Pandora FMS | <757 |
This vulnerability has been solved in the 757 version of Pandora FMS.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-46679 is medium with a CVSS score of 6.1.
The affected software version of CVE-2021-46679 is Pandora FMS version 756 and below.
The XSS vulnerability in CVE-2021-46679 allows an attacker to execute javascript code through service elements in Pandora FMS.
Yes, it is recommended to update Pandora FMS to version 757 to fix the XSS vulnerability in CVE-2021-46679.
You can find more information about CVE-2021-46679 on the official Pandora FMS security page and the INCIBE CVE assignment publication.