WRITEUP #605
Technical Advisory – Multiple Vulnerabilities in PandoraFMS Enterprise
Auth BypassAccount takeoverInformation disclosureRCEUnrestricted file uploadStored XSSArbitrary file readLocal Privilege EscalationPath traversalDoSIDORHardcoded credentials
byOliver Brooks
Program
PandoraFMS
Published
Jan 2, 2024
Added to HackDex
Jan 8, 2024
Read Full Writeuphttps://research.nccgroup.com/2024/01/02/technical-advisory-multiple-vulnerabilities-in-pandorafms-enterprise/