Описание
Cacti 1.1.27 has reflected XSS via the PATH_INFO to host.php.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| cacti | fixed | 1.1.27+ds1-3 | package | |
| cacti | not-affected | stretch | package | |
| cacti | not-affected | jessie | package | |
| cacti | not-affected | wheezy | package |
Примечания
https://github.com/Cacti/cacti/issues/1071
this is more or less a dublicate of CVE-2017-16641
one of the applied patches reopened the vulnerability
EPSS
Процентиль: 42%
0.00196
Низкий
Связанные уязвимости
CVSS3: 6.1
ubuntu
около 8 лет назад
Cacti 1.1.27 has reflected XSS via the PATH_INFO to host.php.
CVSS3: 6.1
nvd
около 8 лет назад
Cacti 1.1.27 has reflected XSS via the PATH_INFO to host.php.
CVSS3: 6.1
github
больше 3 лет назад
Cacti 1.1.27 has reflected XSS via the PATH_INFO to host.php.
EPSS
Процентиль: 42%
0.00196
Низкий