Artica

Pandora Fms

70 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.94%
  • Veröffentlicht 13.04.2026 15:46:53
  • Zuletzt bearbeitet 22.04.2026 14:35:40

Improper Neutralization of Special Elements used in an OS Command vulnerability allows OS Command Injection via WebServerModuleDebug. This issue affects Pandora FMS: from 777 through 800

  • EPSS 0.94%
  • Veröffentlicht 13.04.2026 15:45:46
  • Zuletzt bearbeitet 22.04.2026 14:35:07

Improper Neutralization of Special Elements used in an OS Command vulnerability allows OS Command Injection via Network Report. This issue affects Pandora FMS: from 777 through 800

  • EPSS 0.43%
  • Veröffentlicht 13.04.2026 15:44:46
  • Zuletzt bearbeitet 22.04.2026 14:34:12

Unrestricted Upload of File with Dangerous Type vulnerability allows Remote Code Execution via file upload. This issue affects Pandora FMS: from 777 through 800

  • EPSS 1.84%
  • Veröffentlicht 31.07.2025 15:15:34
  • Zuletzt bearbeitet 15.04.2026 00:35:42

An unauthenticated remote command execution vulnerability exists in Pandora FMS versions up to and including 5.0RC1 via the Anyterm web interface, which listens on TCP port 8023. The anyterm-module endpoint accepts unsanitized user input via the p pa...

  • EPSS 2.08%
  • Veröffentlicht 25.07.2025 16:15:25
  • Zuletzt bearbeitet 15.04.2026 00:35:42

An unauthenticated SQL injection vulnerability exists in Pandora FMS version 5.0 SP2 and earlier. The mobile/index.php endpoint fails to properly sanitize user input in the loginhash_data parameter, allowing attackers to extract administrator credent...

Exploit
  • EPSS 5.09%
  • Veröffentlicht 03.07.2025 19:46:38
  • Zuletzt bearbeitet 16.09.2025 19:44:41

An authenticated remote code execution vulnerability exists in Pandora FMS version 7.0NG and earlier. The net_tools.php functionality allows authenticated users to execute arbitrary OS commands via the select_ips parameter when performing network too...

  • EPSS 19.94%
  • Veröffentlicht 27.06.2025 07:48:15
  • Zuletzt bearbeitet 16.09.2025 13:25:41

Improper Neutralization of Special Elements in the Netflow directory field may allow OS command injection. This issue affects Pandora FMS 774 through 778

  • EPSS 1.26%
  • Veröffentlicht 17.03.2025 09:21:39
  • Zuletzt bearbeitet 16.09.2025 15:53:40

Improper Neutralization of Special Elements used in a Command vulnerability allows OS Command Injection via RCE. This issue affects Pandora FMS from 700 to 777.6 .

  • EPSS 59.42%
  • Veröffentlicht 17.03.2025 09:19:31
  • Zuletzt bearbeitet 16.09.2025 15:55:43

Improper Neutralization of Special Elements used in a Command vulnerability allows OS Command Injection.This issue affects Pandora FMS from 700 to 777.6

  • EPSS 0.91%
  • Veröffentlicht 10.06.2024 15:15:51
  • Zuletzt bearbeitet 16.09.2025 15:56:22

Argument Injection Leading to Remote Code Execution in Realtime Graph Extension, allowing unauthenticated attackers to execute arbitrary code on the server. This issue affects Pandora FMS: from 700 through <777.