OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-64948

HIGH · CVSS 7.1 EPSS 0.21%

Source: NVD + CISA KEV + EPSS · Published 2026-10-01 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

A vulnerability in Pandora FMS versions 777 and later allows unauthorized access to module history due to missing authorization in the data retrieval process, potentially enabling cross-group data exposure. Organizations using affected versions should prioritize patching this issue to mitigate the risk of sensitive information being accessed by unauthorized users. This is particularly critical for environments where data confidentiality and integrity are paramount.

CVE
CVE-2026-64948
Severity
HIGH
CVSS
7.1
EPSS
0.21%

Original NVD Description

Missing authorization in module data retrieval allows unauthorized cross-group access to module history. Affects Pandora FMS from 777 onwards.