PT-2017-14508 · Cacti+1 · Cacti+1
Hex0Wn
·
Published
2017-11-08
·
Updated
2024-06-15
·
CVE-2017-16660
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Cacti version 1.1.27
Description
The issue allows remote authenticated administrators to conduct code execution attacks. This is achieved by placing the Log Path under the web root and then making a request to the
remote agent.php endpoint containing code in the Client-ip header.Recommendations
For Cacti version 1.1.27, consider restricting access to the
remote agent.php endpoint until a patch is available. Additionally, ensure the Log Path is not under the web root to prevent exploitation.Exploit
Fix
RCE
Exposure of Resource to Wrong Sphere
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cacti
Suse