First published: Fri Aug 05 2022(Updated: )
A XSS vulnerability exist in Pandora FMS version 756 and below, that allows an attacker to perform javascript code executions via the module form name field.
Credit: security@pandorafms.com
Affected Software | Affected Version | How to fix |
---|---|---|
Artica Pandora FMS | <=756 |
This vulnerability has been solved in the 757 version of Pandora FMS.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-46680 is medium.
CVE-2021-46680 affects Pandora FMS version 756 and below.
CVE-2021-46680 is a XSS (Cross-Site Scripting) vulnerability.
The CWE ID of CVE-2021-46680 is 79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')).
To fix CVE-2021-46680 in Pandora FMS, you should update to a version higher than 756.