OS Command Injection in Pandora FMS by Pandora FMS
CVE-2025-5306
7HIGH
What is CVE-2025-5306?
An OS command injection vulnerability has been identified in Pandora FMS, specifically attributable to improper sanitization of data within the Netflow directory field. This flaw can potentially allow attackers to execute arbitrary commands on the server by manipulating inputs, compromising system integrity and security. Affected versions include Pandora FMS from 774 to 778, highlighting the need for immediate attention and remediation to prevent exploitation.
Affected Version(s)
Pandora FMS all 774 <= 778