Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r2fr-8m3m-rwqg

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

config.php in Cacti 0.8.6e and earlier allows remote attackers to set the no_http_headers switch, then modify session information to gain privileges and disable the use of addslashes to conduct SQL injection attacks.

config.php in Cacti 0.8.6e and earlier allows remote attackers to set the no_http_headers switch, then modify session information to gain privileges and disable the use of addslashes to conduct SQL injection attacks.

EPSS

Процентиль: 82%
0.02306
Низкий

Связанные уязвимости

ubuntu
около 21 года назад

config.php in Cacti 0.8.6e and earlier allows remote attackers to set the no_http_headers switch, then modify session information to gain privileges and disable the use of addslashes to conduct SQL injection attacks.

nvd
около 21 года назад

config.php in Cacti 0.8.6e and earlier allows remote attackers to set the no_http_headers switch, then modify session information to gain privileges and disable the use of addslashes to conduct SQL injection attacks.

debian
около 21 года назад

config.php in Cacti 0.8.6e and earlier allows remote attackers to set ...

EPSS

Процентиль: 82%
0.02306
Низкий