Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h3c2-xw7j-vr4f

Опубликовано: 26 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.8

Описание

In Pandora FMS v7.0NG.761 and below, in the file manager section, the dirname parameter is vulnerable to a Stored Cross Site-Scripting. This vulnerability can be exploited by an attacker with administrator privileges logged in the system.

In Pandora FMS v7.0NG.761 and below, in the file manager section, the dirname parameter is vulnerable to a Stored Cross Site-Scripting. This vulnerability can be exploited by an attacker with administrator privileges logged in the system.

EPSS

Процентиль: 69%
0.00614
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 3.5
nvd
больше 3 лет назад

In Pandora FMS v7.0NG.761 and below, in the file manager section, the dirname parameter is vulnerable to a Stored Cross Site-Scripting. This vulnerability can be exploited by an attacker with administrator privileges logged in the system.

EPSS

Процентиль: 69%
0.00614
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79