← Back

Artica Pandora Fms

artica_pandora_fms

Vendor: Pandorafms • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Pandorafms
1Artica Pandora Fms
Nov 21, 2024
Jun 16, 2018
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
XSS in Artica Pandora FMS before 7.0 NG 723 allows an attacker to execute arbitrary code via a crafted "refr" parameter in a "/pandora_console/index.php?sec=estado&sec2=operation/agentes/estado_agente&refr=" call.