In Cacti before 1.2.11, disabling a user account does not immediately invalidate any permissions granted to that account (e.g., permission to view logs).
Advisories
Source ID Title
Debian DLA Debian DLA DLA-2965-1 cacti security update
EUVD EUVD EUVD-2020-5499 In Cacti before 1.2.11, disabling a user account does not immediately invalidate any permissions granted to that account (e.g., permission to view logs).
Ubuntu USN Ubuntu USN USN-5214-1 Cacti vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T12:11:19.453Z

Reserved: 2020-05-20T00:00:00

Link: CVE-2020-13230

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-05-20T14:15:11.407

Modified: 2024-11-21T05:00:50.987

Link: CVE-2020-13230

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.