Pandora FMS是美国Pandora FMS公司的一套监控系统。该系统通过可视化的方式监控网络、服务器、虚拟基础架构和应用程序等。 Pandora FMS 700至777.4版本存在命令注入漏洞,该漏洞源于通过 LDAP 配置错误导致命令注入和远程代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Pandora FMS | Pandora FMS | 700 ~ 777.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Exploit for Pandora FMS Remote Code Execution CVE-2024-11320 | https://github.com/mhaskar/CVE-2024-11320 | POC Details |
| 2 | Arbitrary commands execution on the server by exploiting a command injection vulnerability in the LDAP authentication mechanism.This issue affects Pandora FMS- from 700 through <=777.4 | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-11320.yaml | POC Details |
No public POC found.
Login to generate AI POCNo comments yet