CVE-2023-2807

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/06/2023
Last modified:
23/06/2023

Description

Authentication Bypass by Spoofing vulnerability in the password reset process of Pandora FMS allows an unauthenticated attacker to initiate a password reset process for any user account without proper authentication. This issue affects PandoraFMS v771 and prior versions on all platforms.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:pandorafms:pandora_fms:*:*:*:*:*:*:*:* 772 (excluding)