CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable.
CVE
CVE-2021-34074
Severity
CRITICAL
CVSS
9.8
EPSS
7.49%
Original NVD Description
PandoraFMS <=7.54 allows arbitrary file upload, it leading to remote command execution via the File Manager. To bypass the built-in protection, a relative path is used in the requests.
Related CVEs
Other vulnerabilities affecting the same vendor(s)