PT-2023-4993 · Cacti+3 · Cacti+3

X4Vak

·

Published

2023-09-05

·

Updated

2024-06-15

·

CVE-2023-39361

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Cacti versions prior to 1.2.25
Description Cacti is an open source operational monitoring and fault management framework. A SQL injection vulnerability was discovered in graph view.php. Since guest users can access graph view.php without authentication by default, there could be potential for significant damage if guest users are being utilized in an enabled state. Attackers may exploit this vulnerability, potentially leading to actions such as the usurpation of administrative privileges or remote code execution.
Recommendations For versions prior to 1.2.25, upgrade to version 1.2.25 or later to address the SQL injection vulnerability. As a temporary workaround, consider disabling access to graph view.php for guest users until a patch is available. Restrict access to the vulnerable graph view.php file to minimize the risk of exploitation. Avoid using the grow right pane tree() function in the affected graph view.php file until the issue is resolved.

Exploit

Fix

RCE

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2023-7619
ALT-PU-2023-7621
ALT-PU-2024-7120
BDU:2023-05532
CVE-2023-39361
DLA-3765-1
DSA-5550-1
GHSA-6R43-Q2FW-5WRG
OPENSUSE-SU-2023:0275-1
OPENSUSE-SU-2024:13203-1
USN-6720-1

Affected Products

Alt Linux
Cacti
Linuxmint
Ubuntu