PT-2023-5422 · Cacti+1 · Cacti+1

M3Ssap0

·

Published

2023-09-05

·

Updated

2025-01-24

·

CVE-2023-39362

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Cacti version 1.2.24
Description The issue is related to insufficient validation of arguments passed to a command in the lib/snmp.php file, allowing an authenticated privileged user to perform command injection and obtain remote code execution on the underlying server under certain conditions. The lib/snmp.php file has a set of functions that accept input variables and place them into an exec call without proper escape or validation.
Recommendations For Cacti version 1.2.24, upgrade to version 1.2.25 to address the issue. As a temporary workaround, consider restricting access to the lib/snmp.php file or disabling the vulnerable functions until a patch is available. Avoid using malicious strings in the SNMP options of a Device to minimize the risk of exploitation.

Exploit

Fix

RCE

OS Command Injection

Command Injection

Weakness Enumeration

Related Identifiers

ALT-PU-2023-7619
ALT-PU-2023-7621
ALT-PU-2024-7120
ALT-PU-2025-1813
BDU:2023-06052
CVE-2023-39362
DLA-3765-1
DSA-5550-1
GHSA-G6FF-58CJ-X3CP
OPENSUSE-SU-2023:0275-1
OPENSUSE-SU-2024:13203-1

Affected Products

Alt Linux
Cacti