Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-2059


In Pandora FMS v7.0NG.761 and below, in the agent creation section, the alias parameter is vulnerable to a Stored Cross Site-Scripting. This vulnerability can be exploited by an attacker with administrator privileges logged in the system.


Published

2022-07-25T18:22:52.383

Last Modified

2024-11-21T07:00:15.047

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 3.5 (LOW)

Weaknesses
  • Type: Secondary
    CWE-79
  • Type: Primary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application pandorafms pandora_fms ≤ 7.0_ng_761 Yes

References