Security Advisory

CVE-2023-2807

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-06-13 11:10:59
Last updated 2025-01-03 15:22:20
Assigner INCIBE
State PUBLISHED

Description

Authentication Bypass by Spoofing vulnerability in the password reset process of Pandora FMS allows an unauthenticated attacker to initiate a password reset process for any user account without proper authentication. This issue affects PandoraFMS v771 and prior versions on all platforms.