CVE-2023-41812

Unrestricted Upload of File with Dangerous Type vulnerability in Pandora FMS on all allows Accessing Functionality Not Properly Constrained by ACLs. This vulnerability allowed PHP executable files to be uploaded through the file manager. This issue affects Pandora FMS: from 700 through 773.
Configurations

Configuration 1 (hide)

cpe:2.3:a:artica:pandora_fms:*:*:*:*:*:*:*:*

History

30 Nov 2023, 17:04

Type Values Removed Values Added
References () https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/ - () https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/ - Vendor Advisory
CWE CWE-434
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
First Time Artica pandora Fms
Artica
CPE cpe:2.3:a:artica:pandora_fms:*:*:*:*:*:*:*:*

23 Nov 2023, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-23 15:15

Updated : 2024-02-28 20:54


NVD link : CVE-2023-41812

Mitre link : CVE-2023-41812

CVE.ORG link : CVE-2023-41812


JSON object : View

Products Affected

artica

  • pandora_fms
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type