Beveiligingsadvies

CVE-2021-3816

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-01-19 20:38:50
Laatst bijgewerkt 2024-08-03 17:09:09
Toegewezen door redhat
CVSS-score geen score
Status PUBLISHED

Beschrijving

Cacti 1.1.38 allows authenticated users with User Management permissions to inject arbitrary HTML in the group_prefix field during the creation of a new group via "Copy" method at user_group_admin.php.