CVE-2023-24517
Remote Code Execution via Unrestricted File Upload
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 6.4EPSS 0.9%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Ciclo de vida
22 ago 2023Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Unrestricted Upload of File with Dangerous Type vulnerability in the Pandora FMS File Manager component, allows an attacker to make make use of this issue ( unrestricted file upload ) to execute arbitrary system commands. This issue affects Pandora FMS v767 version and prior versions on all platforms.
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:L
Productos afectados
Artica PFMS · Pandora FMS¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →