CVE-2023-44092: OS Command Injection
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Pandora FMS on all allows OS Command Injection. This vulnerability allowed to create a reverse shell and execute commands in the OS. This issue affects Pandora FMS: from 700 through <776.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-44092?
CVE-2023-44092 has a high severity rating due to its potential for OS Command Injection.
How do I fix CVE-2023-44092?
To mitigate CVE-2023-44092, ensure you upgrade Pandora FMS to version 777 or later.
What systems are affected by CVE-2023-44092?
CVE-2023-44092 affects Pandora FMS versions from 700 to 776.
What are the potential impacts of CVE-2023-44092?
The potential impact of CVE-2023-44092 includes unauthorized access to system commands and the ability to establish a reverse shell.
Is there a workaround for CVE-2023-44092 if I cannot update?
If an update isn't feasible, restricting network access to the affected systems can serve as a temporary workaround for CVE-2023-44092.