CVE-2023-2807

Publication date

2023-06-13 11:10:59

Family

INCIBE

State

PUBLISHED

Description

Authentication Bypass by Spoofing vulnerability in the password reset process of Pandora FMS allows an unauthenticated attacker to initiate a password reset process for any user account without proper authentication. This issue affects PandoraFMS v771 and prior versions on all platforms.