Artica Pandora FMS 7.44 allows arbitrary file upload (leading to remote command execution) via the File Repository Manager feature.
References
Link | Resource |
---|---|
https://www.coresecurity.com/advisories | Third Party Advisory |
https://www.coresecurity.com/core-labs/advisories/pandora-fms-community-multiple-vulnerabilities | Exploit Third Party Advisory |
Configurations
Information
Published : 2020-06-10 20:15
Updated : 2020-06-11 11:32
NVD link : CVE-2020-13855
Mitre link : CVE-2020-13855
JSON object : View
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
Products Affected
pandorafms
- pandora_fms