CVE-2021-46679: Vulnerability XSS in service elements
Published Aug 5, 2022
·Updated
A XSS vulnerability exist in Pandora FMS version 756 and below, that allows an attacker to perform javascript code executions via service elements.
Affected Software
1 affected component
PandoraFMS Pandora FMS<757
Remediation
Information
This vulnerability has been solved in the 757 version of Pandora FMS.
Event History
Aug 5, 2022
CVE Published
via MITRE·03:25 PM
Data Sourced
via MITRE·03:25 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-46679?
The severity of CVE-2021-46679 is medium with a CVSS score of 6.1.
2
What is the affected software version of CVE-2021-46679?
The affected software version of CVE-2021-46679 is Pandora FMS version 756 and below.
3
How does the XSS vulnerability in CVE-2021-46679 allow an attacker to execute javascript code?
The XSS vulnerability in CVE-2021-46679 allows an attacker to execute javascript code through service elements in Pandora FMS.
4
Is there a fix available for CVE-2021-46679?
Yes, it is recommended to update Pandora FMS to version 757 to fix the XSS vulnerability in CVE-2021-46679.
5
Where can I find more information about CVE-2021-46679?
You can find more information about CVE-2021-46679 on the official Pandora FMS security page and the INCIBE CVE assignment publication.