Cacti provides an operational monitoring and fault management framework. A reflected cross-site scripting vulnerability on the 1.3.x DEV branch allows attackers to obtain cookies of administrator and other users and fake their login using obtained cookies. This issue is fixed in commit a38b9046e9772612fda847b46308f9391a49891e.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-28189 | Cacti provides an operational monitoring and fault management framework. A reflected cross-site scripting vulnerability on the 1.3.x DEV branch allows attackers to obtain cookies of administrator and other users and fake their login using obtained cookies. This issue is fixed in commit a38b9046e9772612fda847b46308f9391a49891e. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-02T01:32:06.680Z
Reserved: 2024-03-26T12:52:00.935Z
Link: CVE-2024-30268
Updated: 2024-08-02T01:32:06.680Z
Status : Awaiting Analysis
Published: 2024-05-14T15:22:18.957
Modified: 2024-11-21T09:11:35.370
Link: CVE-2024-30268
No data.
OpenCVE Enrichment
Updated: 2025-07-12T15:42:21Z
Weaknesses
EUVD