SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2010-1645

Cacti before 0.8.7f, as used in Red Hat High Performance Computing (HPC) Solution and other products, allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in (1) the FQDN field of a Device or (2) the Vertical…

MEDIUM 6.5EPSS 2.80%

Does this matter?

Lower severity and a low EPSS score (2.80%). Track it; it rarely justifies an emergency change on its own.

Description

Cacti before 0.8.7f, as used in Red Hat High Performance Computing (HPC) Solution and other products, allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in (1) the FQDN field of a Device or (2) the Vertical Label field of a Graph Template.

CVSS 2.0
6.5 MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
EPSS
2.80% probability · 86th percentile
CISA KEV
Not listed
Weakness
CWE-20
Affected
cacti/cacti
Source
secalert@redhat.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.