Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Fixed in v800.1 and v801 Pandora FMS versions
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 22 Apr 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Artica
Artica pandora Fms |
|
| CPEs | cpe:2.3:a:artica:pandora_fms:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Artica
Artica pandora Fms |
|
| Metrics |
cvssV3_1
|
Tue, 14 Apr 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Pandora Fms
Pandora Fms pandora Fms |
|
| Vendors & Products |
Pandora Fms
Pandora Fms pandora Fms |
Mon, 13 Apr 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 13 Apr 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Special Elements used in an OS Command vulnerability allows OS Command Injection via WebServerModuleDebug. This issue affects Pandora FMS: from 777 through 800 | |
| Title | OS Command Injection in WebServerModuleDebug via Blacklist Bypass leads to Remote Code Execution | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: PandoraFMS
Published:
Updated: 2026-04-13T18:05:50.375Z
Reserved: 2026-03-05T16:16:01.151Z
Link: CVE-2026-30809
Updated: 2026-04-13T18:05:39.910Z
Status : Analyzed
Published: 2026-04-13T16:16:25.853
Modified: 2026-04-22T14:35:40.233
Link: CVE-2026-30809
No data.
OpenCVE Enrichment
Updated: 2026-04-14T16:34:06Z