XSS Vulnerability in Pandora FMS v756 and Below: Exploiting the Module Massive Operation Name Field

XSS Vulnerability in Pandora FMS v756 and Below: Exploiting the Module Massive Operation Name Field

CVE-2021-46681 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

A XSS vulnerability exist in Pandora FMS version 756 and below, that allows an attacker to perform javascript code executions via module massive operation name field.

Learn more about our Web Application Penetration Testing UK.