Beveiligingsadvies

CVE-2022-2059

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-07-25 17:48:40
Laatst bijgewerkt 2024-09-16 19:40:15
Toegewezen door INCIBE
CVSS-score 3.5
Status PUBLISHED

Beschrijving

In Pandora FMS v7.0NG.761 and below, in the agent creation section, the alias parameter is vulnerable to a Stored Cross Site-Scripting. This vulnerability can be exploited by an attacker with administrator privileges logged in the system.