First published: Thu Nov 23 2023(Updated: )
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pandora FMS on all allows File Discovery. This vulnerability allows users with low privileges to download database backups. This issue affects Pandora FMS: from 700 through 772.
Credit: security@pandorafms.com
Affected Software | Affected Version | How to fix |
---|---|---|
Artica Pandora FMS | >=700<773 |
Fixed in v773 and 772.1.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-41786.
The severity of CVE-2023-41786 is medium, with a severity value of 6.8.
CVE-2023-41786 allows users with low privileges to download database backups in Pandora FMS.
To fix CVE-2023-41786, it is recommended to apply the latest patches or updates provided by Pandora FMS.
More information about CVE-2023-41786 can be found at the following reference: https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/