CVE-2019-17357
Cacti through 1.2.7 is affected by a graphs.php?template_id= SQL injection vulnerability affecting how template identifiers are handled when a string and id composite value are used to identify the template type and id.
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 34.2%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
Cacti through 1.2.7 is affected by a graphs.php?template_id= SQL injection vulnerability affecting how template identifiers are handled when a string and id composite value are used to identify the template type and id. An authenticated attacker can exploit this to extract data from the database, or an unauthenticated remote attacker could exploit this via Cross-Site Request Forgery.
- CVSS 3.1
- 6.5 MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 34.24% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-89
- Affected
- cacti/cacti
- Source
- cve@mitre.org
References
- http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00001.html
- http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00005.html
- http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00042.html
- http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00048.html
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=947374Issue Tracking, Third Party Advisory
- https://github.com/Cacti/cacti/issues/3025Patch, Third Party Advisory
- https://security.gentoo.org/glsa/202003-40
- https://www.darkmatter.ae/xen1thlabs/Broken Link
- http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00001.html
- http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00005.html
- http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00042.html
- http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00048.html
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=947374Issue Tracking, Third Party Advisory
- https://github.com/Cacti/cacti/issues/3025Patch, Third Party Advisory
- https://security.gentoo.org/glsa/202003-40
- https://www.darkmatter.ae/xen1thlabs/Broken Link
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.