XSS Vulnerability in Pandora FMS Version 756 and Below: Remote Code Execution via Module Form Name Field

XSS Vulnerability in Pandora FMS Version 756 and Below: Remote Code Execution via Module Form Name Field

CVE-2021-46680 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

A XSS vulnerability exist in Pandora FMS version 756 and below, that allows an attacker to perform javascript code executions via the module form name field.

Learn more about our Web Application Penetration Testing UK.