PT-2024-7759 · Cacti+1 · Cacti+1
Tayfunyelim
·
Published
2023-07-13
·
Updated
2025-02-11
·
CVE-2024-43365
CVSS v2.0
8.0
High
| Vector | AV:N/AC:L/Au:S/C:P/I:P/A:C |
Name of the Vulnerable Software and Affected Versions
Cacti versions prior to 1.2.28
Description
The issue arises from the improper sanitization of the
consolenewsection parameter when saving external links in links.php, which is then stored in the database and reflected back to the user in index.php, leading to stored XSS. Users with the privilege to create external links can manipulate the consolenewsection parameter in the HTTP post request to perform stored XSS attacks. This occurs when an application allows untrusted user input to be displayed on a web page without proper validation or escaping.Recommendations
For versions prior to 1.2.28, upgrade to release version 1.2.28 to address the issue. As a temporary workaround, consider restricting access to the
consolenewsection parameter in links.php to minimize the risk of exploitation. Additionally, restrict the ability for users to create external links until the issue is resolved.Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Cacti