Cross-site Scripting (XSS) vulnerability in Visual Console Module of Pandora FMS could be used to hijack admin users session cookie values, carry out phishing attacks, etc. This issue affects Pandora FMS v767 version and prior versions on all platforms.
References
Link | Resource |
---|---|
https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/ | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: INCIBE
Published: 2023-08-22T13:02:10.102Z
Updated: 2023-08-22T13:02:10.102Z
Reserved: 2023-01-25T13:49:34.265Z
Link: CVE-2023-24514
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-08-22T19:16:34.393
Modified: 2023-08-26T02:26:23.970
Link: CVE-2023-24514
JSON object: View
Redhat Information
No data.
CWE