First published: Thu Nov 23 2023(Updated: )
Uncontrolled Search Path Element vulnerability in Pandora FMS on all allows Leveraging/Manipulating Configuration File Search Paths. This vulnerability allows to access the server configuration file and to compromise the database. This issue affects Pandora FMS: from 700 through 773.
Credit: security@pandorafms.com
Affected Software | Affected Version | How to fix |
---|---|---|
Artica Pandora FMS | >=700<=773 |
Fixed in v774 in v772.2.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-41790.
The severity of the CVE-2023-41790 vulnerability is critical.
The CVE-2023-41790 vulnerability allows unauthorized access to the server configuration file and can compromise the database.
The CVE-2023-41790 vulnerability affects Pandora FMS versions 700 through 773.
To fix the CVE-2023-41790 vulnerability, apply the latest patches or updates provided by the vendor, Artica Pandora FMS.