Логотип exploitDog
bind:CVE-2019-17357
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-17357

Количество 7

Количество 7

ubuntu логотип

CVE-2019-17357

около 6 лет назад

Cacti through 1.2.7 is affected by a graphs.php?template_id= SQL injection vulnerability affecting how template identifiers are handled when a string and id composite value are used to identify the template type and id. An authenticated attacker can exploit this to extract data from the database, or an unauthenticated remote attacker could exploit this via Cross-Site Request Forgery.

CVSS3: 6.5
EPSS: Средний
nvd логотип

CVE-2019-17357

около 6 лет назад

Cacti through 1.2.7 is affected by a graphs.php?template_id= SQL injection vulnerability affecting how template identifiers are handled when a string and id composite value are used to identify the template type and id. An authenticated attacker can exploit this to extract data from the database, or an unauthenticated remote attacker could exploit this via Cross-Site Request Forgery.

CVSS3: 6.5
EPSS: Средний
debian логотип

CVE-2019-17357

около 6 лет назад

Cacti through 1.2.7 is affected by a graphs.php?template_id= SQL injec ...

CVSS3: 6.5
EPSS: Средний
github логотип

GHSA-mxrx-hwh2-j2jm

больше 3 лет назад

Cacti through 1.2.7 is affected by a graphs.php?template_id= SQL injection vulnerability affecting how template identifiers are handled when a string and id composite value are used to identify the template type and id. An authenticated attacker can exploit this to extract data from the database, or an unauthenticated remote attacker could exploit this via Cross-Site Request Forgery.

EPSS: Средний
fstec логотип

BDU:2020-01955

больше 6 лет назад

Уязвимость функции template_id системы мониторинга сервера Cacti, связанная с непринятием мер по защите структуры запроса sql, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 6.5
EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2020:0272-1

почти 6 лет назад

Security update for cacti, cacti-spine

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:0558-1

почти 6 лет назад

Security update for cacti, cacti-spine

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-17357

Cacti through 1.2.7 is affected by a graphs.php?template_id= SQL injection vulnerability affecting how template identifiers are handled when a string and id composite value are used to identify the template type and id. An authenticated attacker can exploit this to extract data from the database, or an unauthenticated remote attacker could exploit this via Cross-Site Request Forgery.

CVSS3: 6.5
16%
Средний
около 6 лет назад
nvd логотип
CVE-2019-17357

Cacti through 1.2.7 is affected by a graphs.php?template_id= SQL injection vulnerability affecting how template identifiers are handled when a string and id composite value are used to identify the template type and id. An authenticated attacker can exploit this to extract data from the database, or an unauthenticated remote attacker could exploit this via Cross-Site Request Forgery.

CVSS3: 6.5
16%
Средний
около 6 лет назад
debian логотип
CVE-2019-17357

Cacti through 1.2.7 is affected by a graphs.php?template_id= SQL injec ...

CVSS3: 6.5
16%
Средний
около 6 лет назад
github логотип
GHSA-mxrx-hwh2-j2jm

Cacti through 1.2.7 is affected by a graphs.php?template_id= SQL injection vulnerability affecting how template identifiers are handled when a string and id composite value are used to identify the template type and id. An authenticated attacker can exploit this to extract data from the database, or an unauthenticated remote attacker could exploit this via Cross-Site Request Forgery.

16%
Средний
больше 3 лет назад
fstec логотип
BDU:2020-01955

Уязвимость функции template_id системы мониторинга сервера Cacti, связанная с непринятием мер по защите структуры запроса sql, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 6.5
16%
Средний
больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2020:0272-1

Security update for cacti, cacti-spine

почти 6 лет назад
suse-cvrf логотип
openSUSE-SU-2020:0558-1

Security update for cacti, cacti-spine

почти 6 лет назад

Уязвимостей на страницу