Cacti

Cacti

137 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.45%
  • Published 05.09.2023 21:15:47
  • Last modified 21.11.2024 08:15:34

Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored Cross-Site-Scripting (XSS) Vulnerability which allows an authenticated user to poison data stored in the _cacti_'s database. Thes...

Exploit
  • EPSS 0.28%
  • Published 05.09.2023 21:15:47
  • Last modified 21.11.2024 08:15:34

Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored Cross-Site-Scripting (XSS) Vulnerability which allows an authenticated user to poison data stored in the _cacti_'s database. Thes...

Exploit
  • EPSS 0.29%
  • Published 05.09.2023 21:15:47
  • Last modified 10.04.2025 20:54:10

Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored Cross-Site-Scripting (XSS) Vulnerability which allows an authenticated user to poison data stored in the _cacti_'s database. Thes...

Exploit
  • EPSS 0.24%
  • Published 05.09.2023 21:15:47
  • Last modified 21.11.2024 08:15:34

Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored Cross-Site-Scripting (XSS) Vulnerability allows an authenticated user to poison data stored in the cacti's database. These data w...

Exploit
  • EPSS 4.72%
  • Published 05.09.2023 21:15:46
  • Last modified 21.11.2024 08:15:14

Cacti is an open source operational monitoring and fault management framework. An authenticated SQL injection vulnerability was discovered which allows authenticated users to perform privilege escalation and remote code execution. The vulnerability r...

Exploit
  • EPSS 0.48%
  • Published 05.09.2023 21:15:46
  • Last modified 21.11.2024 08:15:14

Cacti is an open source operational monitoring and fault management framework.Affected versions are subject to a Stored Cross-Site-Scripting (XSS) Vulnerability allows an authenticated user to poison data. The vulnerability is found in `graphs_new.ph...

Exploit
  • EPSS 93.06%
  • Published 05.09.2023 21:15:46
  • Last modified 21.11.2024 08:15:14

Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a SQL injection discovered in graph_view.php. Since guest users can access graph_view.php without authentication by default, if guest user...

Exploit
  • EPSS 0.33%
  • Published 05.09.2023 21:15:46
  • Last modified 21.11.2024 08:15:15

Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored Cross-Site-Scripting (XSS) Vulnerability allows an authenticated user to poison data stored in the _cacti_'s database. These data...

Exploit
  • EPSS 0.06%
  • Published 22.08.2023 19:16:31
  • Last modified 21.11.2024 07:33:29

In Cacti 1.2.19, there is an authentication bypass in the web login functionality because of improper validation in the PHP code: cacti_ldap_auth() allows a zero as the password.

Exploit
  • EPSS 0.52%
  • Published 22.08.2023 19:16:31
  • Last modified 21.11.2024 07:33:30

A reflected cross-site scripting (XSS) vulnerability in Cacti 0.8.7g and earlier allows unauthenticated remote attackers to inject arbitrary web script or HTML in the "ref" parameter at auth_changepassword.php.