漏洞描述 PandoraFMS是美国pandorafms的一个应用软件。提供一个监控功能。 PandoraFMS 存在安全漏洞,该漏洞源于PandoraFMS <=7.54允许任意文件上传。攻击者可利用该漏洞通过文件管理器远程执行命令。
相关漏洞推荐 POC CVE-2018-11222: Pandora FMS <=7.0NG.722 - Remote Code Execution POC CVE-2019-20224: Pandora FMS 7.0NG - Remote Command Injection POC CVE-2020-13158: Artica Proxy Community Edition <4.30.000000 - Local File Inclusion POC CVE-2020-13851: Artica Pandora FMS 7.44 - Remote Code Execution POC CVE-2020-17505: Artica Web Proxy 4.30 - OS Command Injection POC CVE-2020-17506: Artica Web Proxy 4.30 - Authentication Bypass/SQL Injection POC CVE-2020-8497: Artica Pandora FMS <=7.42 - Arbitrary File Read POC CVE-2022-37153: Artica Proxy 4.30.000000 - Cross-Site Scripting POC CVE-2024-11320: Pandora v7.0NG.777.3 - Remote Code Execution POC CVE-2024-2053: Artica Proxy - Unauthenticated LFI POC CVE-2019-20224: PandoraFMS v7.0NG Post-auth Remote Code Execution POC pandora-fms-installer: Pandora FMS Installation Page - Exposure Artica Proxy Loopback服务认证绕过漏洞