Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown
CVE-2021-32098
Disclosure Date: May 07, 2021 (last updated February 22, 2025)
Artica Pandora FMS 742 allows unauthenticated attackers to perform Phar deserialization.
0
Attacker Value
Unknown
CVE-2021-32099
Disclosure Date: May 07, 2021 (last updated February 22, 2025)
A SQL injection vulnerability in the pandora_console component of Artica Pandora FMS 742 allows an unauthenticated attacker to upgrade his unprivileged session via the /include/chart_generator.php session_id parameter, leading to a login bypass.
0
Attacker Value
Unknown
CVE-2021-32100
Disclosure Date: May 07, 2021 (last updated February 22, 2025)
A remote file inclusion vulnerability exists in Artica Pandora FMS 742, exploitable by the lowest privileged user.
0
Attacker Value
Unknown
CVE-2019-19968
Disclosure Date: February 04, 2020 (last updated February 21, 2025)
PandoraFMS 742 suffers from multiple XSS vulnerabilities, affecting the Agent Management, Report Builder, and Graph Builder components. An authenticated user can inject dangerous content into a data store that is later read and included in dynamic content.
0