Cacti

Cacti

140 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 9.4%
  • Veröffentlicht 14.05.2024 15:25:20
  • Zuletzt bearbeitet 04.11.2025 17:15:50

Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data stored in `automation_tree_rules_form_save()` function in `automation_tree_rules.php` is not thoroughly checked and is used to concaten...

  • EPSS 0.26%
  • Veröffentlicht 14.05.2024 15:22:18
  • Zuletzt bearbeitet 21.11.2024 09:11:35

Cacti provides an operational monitoring and fault management framework. A reflected cross-site scripting vulnerability on the 1.3.x DEV branch allows attackers to obtain cookies of administrator and other users and fake their login using obtained co...

  • EPSS 93.22%
  • Veröffentlicht 14.05.2024 15:17:15
  • Zuletzt bearbeitet 21.11.2024 09:08:34

Cacti provides an operational monitoring and fault management framework. A command injection vulnerability on the 1.3.x DEV branch allows any unauthenticated user to execute arbitrary command on the server when `register_argc_argv` option of PHP is `...

Exploit
  • EPSS 0.16%
  • Veröffentlicht 14.05.2024 15:17:14
  • Zuletzt bearbeitet 18.12.2024 21:10:38

Cacti provides an operational monitoring and fault management framework. Versions of Cacti prior to 1.2.27 contain a residual cross-site scripting vulnerability caused by an incomplete fix for CVE-2023-50250. `raise_message_javascript` from `lib/func...

Exploit
  • EPSS 0.3%
  • Veröffentlicht 14.05.2024 15:11:27
  • Zuletzt bearbeitet 18.12.2024 21:01:17

Cacti provides an operational monitoring and fault management framework. Versions of Cacti prior to 1.2.27 are vulnerable to stored cross-site scripting, a type of cross-site scripting where malicious scripts are permanently stored on a target server...

Exploit
  • EPSS 88.31%
  • Veröffentlicht 14.05.2024 15:05:50
  • Zuletzt bearbeitet 04.11.2025 17:15:46

Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, an arbitrary file write vulnerability, exploitable through the "Package Import" feature, allows authenticated users having the "Import Templates" permis...

Exploit
  • EPSS 2.69%
  • Veröffentlicht 22.12.2023 17:15:09
  • Zuletzt bearbeitet 10.04.2025 20:31:34

Cacti is an open source operational monitoring and fault management framework. A reflection cross-site scripting vulnerability was discovered in version 1.2.25. Attackers can exploit this vulnerability to perform actions on behalf of other users. The...

Exploit
  • EPSS 32.08%
  • Veröffentlicht 22.12.2023 17:15:09
  • Zuletzt bearbeitet 21.11.2024 08:38:08

Cacti provides an operational monitoring and fault management framework. Version 1.2.25 has a Blind SQL Injection (SQLi) vulnerability within the SNMP Notification Receivers feature in the file `‘managers.php’`. An authenticated attacker with the “Se...

Exploit
  • EPSS 1.02%
  • Veröffentlicht 22.12.2023 17:15:08
  • Zuletzt bearbeitet 21.11.2024 08:32:47

Cacti is an open source operational monitoring and fault management framework. The fix applied for CVE-2023-39515 in version 1.2.25 is incomplete as it enables an adversary to have a victim browser execute malicious code when a victim user hovers the...

Exploit
  • EPSS 91.25%
  • Veröffentlicht 22.12.2023 17:15:07
  • Zuletzt bearbeitet 21.11.2024 08:32:47

Cacti provides an operational monitoring and fault management framework. In versions 1.2.25 and prior, it is possible to execute arbitrary SQL code through the `pollers.php` script. An authorized user may be able to execute arbitrary SQL code. The vu...