Authentication Bypass by Spoofing vulnerability in the password reset process of Pandora FMS allows an unauthenticated attacker to initiate a password reset process for any user account without proper authentication. This issue affects PandoraFMS v771 and prior versions on all platforms.
References
Link | Resource |
---|---|
https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/ | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: INCIBE
Published: 2023-06-13T11:10:59.966Z
Updated: 2023-09-26T10:25:07.973Z
Reserved: 2023-05-19T08:29:18.021Z
Link: CVE-2023-2807
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-06-13T12:15:09.380
Modified: 2023-06-23T19:49:50.537
Link: CVE-2023-2807
JSON object: View
Redhat Information
No data.
CWE