Critical severity9.8NVD Advisory· Published Jun 25, 2021· Updated Jun 17, 2026
CVE-2021-34074
CVE-2021-34074
Description
PandoraFMS <=7.54 allows arbitrary file upload, it leading to remote command execution via the File Manager. To bypass the built-in protection, a relative path is used in the requests.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<=7.54+ 2 more
- (no CPE)range: <=7.54
- cpe:2.3:a:pandorafms:pandora_fms:*:*:*:*:*:*:*:*range: <=754
- (no CPE)
Patches
Vulnerability mechanics
References
1- k4m1ll0.com/cve-pandorafms754-chained-xss-rce.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.