A cross-site scripting (XSS) vulnerability exists in host.php (via tree.php) in Cacti before 1.2.0 due to lack of escaping of unintended characters in the Website Hostname field for Devices.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-01-16T16:00:00
Updated: 2024-08-05T12:12:28.314Z
Reserved: 2019-01-16T00:00:00
Link: CVE-2018-20726
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-01-16T16:29:00.697
Modified: 2024-11-21T04:02:02.620
Link: CVE-2018-20726
Redhat
No data.