Security Advisory

CVE-2022-2059

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-07-25 17:48:40
Last updated 2024-09-16 19:40:15
Assigner INCIBE
State PUBLISHED

Description

In Pandora FMS v7.0NG.761 and below, in the agent creation section, the alias parameter is vulnerable to a Stored Cross Site-Scripting. This vulnerability can be exploited by an attacker with administrator privileges logged in the system.