CVE-2023-41786

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pandora FMS on all allows File Discovery. This vulnerability allows users with low privileges to download database backups. This issue affects Pandora FMS: from 700 through 772.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:artica:pandora_fms:*:*:*:*:*:*:*:*

History

30 Nov 2023, 17:06

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CWE CWE-668
First Time Artica
Artica pandora Fms
CPE cpe:2.3:a:artica:pandora_fms:*:*:*:*:*:*:*:*
References () https://https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/ - () https://https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/ - Broken Link, Vendor Advisory

23 Nov 2023, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-23 15:15

Updated : 2023-12-10 15:26


NVD link : CVE-2023-41786

Mitre link : CVE-2023-41786

CVE.ORG link : CVE-2023-41786


JSON object : View

Products Affected

artica

  • pandora_fms
CWE
CWE-668

Exposure of Resource to Wrong Sphere

CWE-200

Exposure of Sensitive Information to an Unauthorized Actor