PT-2022-13225 · Unknown · Pandora Fms

Published

2022-03-09

·

Updated

2022-10-27

·

CVE-2022-0507

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Pandora FMS versions up to OUM 759
Description A potential security issue was discovered in the Pandora API, which could allow an attacker with authenticated IP to inject SQL.
Recommendations For Pandora FMS versions up to OUM 759, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2022-0507

Affected Products

Pandora Fms