Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-08362
HistoryJan 23, 2022 - 12:00 a.m.

Cacti Cross-Site Scripting Vulnerability (CNVD-2022-08362)

2022-01-2300:00:00
China National Vulnerability Database
www.cnvd.org.cn
9

0.001 Low

EPSS

Percentile

19.7%

Cacti is an open source set of network traffic monitoring and analysis tools from the Cacti team. The tool obtains data via snmpget, uses RRDtool drawing graphs for analysis, and provides data and user management features. a cross-site scripting vulnerability exists in Cacti, which stems from Cacti 1.1.38 and allows an authenticated user with user management privileges to create a new user via the Copy method in user_admin.php during No details of the vulnerability are currently available.

CPENameOperatorVersion
cacti cactieq1.1.38

0.001 Low

EPSS

Percentile

19.7%