Loading
Generated remediation guidance and an executive summary. No account required.
Reflected Cross Site Scripting in Search Functionality of Module Library in Pandora FMS Console v766 and lower. This vulnerability arises on the forget password functionality in which parameter username does not proper input validation/sanitization thus results in executing malicious JavaScript payload.
Use CWE-352, Pandorafms vendor hub and Pandora Fms product page to widen CVE-2022-47373 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-34088, CVE-2024-9987 and CVE-2024-35308 for nearby disclosures in the same product family.