First published: Tue Aug 22 2023(Updated: )
Unrestricted Upload of File with Dangerous Type vulnerability in the Pandora FMS File Manager component, allows an attacker to make make use of this issue ( unrestricted file upload ) to execute arbitrary system commands. This issue affects Pandora FMS v767 version and prior versions on all platforms.
Credit: cve-coordination@incibe.es
Affected Software | Affected Version | How to fix |
---|---|---|
Artica Pandora FMS | <=767 |
Fixed in v769
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-24517 is critical with a rating of 9.8 out of 10.
The vulnerability allows attackers to upload and execute arbitrary system commands.
Pandora FMS v767 version and prior versions are affected by this vulnerability.
Attackers can exploit the vulnerability by uploading files with dangerous types and executing malicious commands.
It is recommended to update to a version higher than v767 to mitigate the vulnerability.