lib/rrd.php in Cacti 1.1.27 allows remote authenticated administrators to execute arbitrary OS commands via the path_rrdtool parameter in an action=save request to settings.php.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/Cacti/cacti/issues/1057 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-11-07T20:00:00Z
Updated: 2024-09-17T00:01:51.159Z
Reserved: 2017-11-07T00:00:00Z
Link: CVE-2017-16641
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2017-11-07T20:29:00.183
Modified: 2017-11-28T18:48:26.463
Link: CVE-2017-16641
Redhat
No data.