Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pf44-w7r9-5mhh

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

Cacti 1.1.27 allows remote authenticated administrators to conduct Remote Code Execution attacks by placing the Log Path under the web root, and then making a remote_agent.php request containing PHP code in a Client-ip header.

Cacti 1.1.27 allows remote authenticated administrators to conduct Remote Code Execution attacks by placing the Log Path under the web root, and then making a remote_agent.php request containing PHP code in a Client-ip header.

EPSS

Процентиль: 80%
0.01457
Низкий

7.2 High

CVSS3

Дефекты

CWE-668

Связанные уязвимости

CVSS3: 7.2
ubuntu
около 8 лет назад

Cacti 1.1.27 allows remote authenticated administrators to conduct Remote Code Execution attacks by placing the Log Path under the web root, and then making a remote_agent.php request containing PHP code in a Client-ip header.

CVSS3: 7.2
nvd
около 8 лет назад

Cacti 1.1.27 allows remote authenticated administrators to conduct Remote Code Execution attacks by placing the Log Path under the web root, and then making a remote_agent.php request containing PHP code in a Client-ip header.

CVSS3: 7.2
debian
около 8 лет назад

Cacti 1.1.27 allows remote authenticated administrators to conduct Rem ...

suse-cvrf
около 8 лет назад

Security update for cacti, cacti-spine

EPSS

Процентиль: 80%
0.01457
Низкий

7.2 High

CVSS3

Дефекты

CWE-668