Security Advisory
CVE-2017-1000032
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Cross-Site scripting (XSS) vulnerabilities in Cacti 0.8.8b allow remote attackers to inject arbitrary web script or HTML via the parent_id parameter to tree.php and drp_action parameter to data_sources.php.