VendorsPandora FMSpandora_fms7.44
Vulnerabilities

Pandora FMS 7.0 NG 723 7.44

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2020-13854
Artica Pandora FMS 7.44 allows privilege escalation.
Published 2020-06-11 · Modified
10.0EPSS 0.030
CVE-2020-13851
Artica Pandora FMS 7.44 allows remote command execution via the events feature.
Published 2020-06-11 · Modified
9.0EPSS 0.910
CVE-2020-13852
Artica Pandora FMS 7.44 allows arbitrary file upload (leading to remote command execution) via the File Manager feature.
Published 2020-06-11 · Modified
9.0EPSS 0.276
CVE-2020-13855
Artica Pandora FMS 7.44 allows arbitrary file upload (leading to remote command execution) via the File Repository Manager feature.
Published 2020-06-11 · Modified
9.0EPSS 0.276
CVE-2020-13850
Artica Pandora FMS 7.44 has inadequate access controls on a web folder.
Published 2020-06-11 · Modified
7.5EPSS 0.022
CVE-2020-13853
Artica Pandora FMS 7.44 has persistent XSS in the Messages feature.
Published 2020-06-11 · Modified
5.4EPSS 0.010