Loading
Generated remediation guidance and an executive summary. No account required.
Stored cross-site scripting vulnerability in the Create event section in Pandora FMS Console v766 and lower. An attacker typically exploits this vulnerability by injecting XSS payloads on popular pages of a site or passing a link to a victim, tricking them into viewing the page that contains the stored XSS payload.
Use CWE-352, Pandorafms vendor hub and Pandora Fms product page to widen CVE-2022-47372 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-34088, CVE-2024-9987 and CVE-2024-35308 for nearby disclosures in the same product family.