CVE-2023-41786

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pandora FMS on all allows File Discovery. This vulnerability allows users with low privileges to download database backups. This issue affects Pandora FMS: from 700 through 772.
Configurations

Configuration 1 (hide)

cpe:2.3:a:artica:pandora_fms:*:*:*:*:*:*:*:*

History

21 Nov 2024, 08:21

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 6.5
v2 : unknown
v3 : 6.8
References () https://https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/ - Broken Link, Vendor Advisory () https://https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/ - Broken Link, Vendor Advisory

30 Nov 2023, 17:06

Type Values Removed Values Added
References () https://https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/ - () https://https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/ - Broken Link, Vendor Advisory
CPE cpe:2.3:a:artica:pandora_fms:*:*:*:*:*:*:*:*
First Time Artica
Artica pandora Fms
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CWE CWE-668

23 Nov 2023, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-23 15:15

Updated : 2024-11-21 08:21


NVD link : CVE-2023-41786

Mitre link : CVE-2023-41786

CVE.ORG link : CVE-2023-41786


JSON object : View

Products Affected

artica

  • pandora_fms
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-668

Exposure of Resource to Wrong Sphere