CVE-2025-24367 - Cacti Remote Code Execution (RCE)

CVE ID : CVE-2025-24367 Published : Jan. 27, 2025, 6:15 p.m. | 59 minutes ago Description : Cacti is an open source performance and fault management framework. An authenticated Cacti user can abuse graph creation and graph template functionality to create arbitrary PHP scripts in the web root of the application, leading to remote code execution on the server. This vulnerability is fixed in 1.2.29. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Jan 27, 2025 - 20:15
 0  0
CVE-2025-24367 - Cacti Remote Code Execution (RCE)
CVE ID : CVE-2025-24367
Published : Jan. 27, 2025, 6:15 p.m. | 59 minutes ago
Description : Cacti is an open source performance and fault management framework. An authenticated Cacti user can abuse graph creation and graph template functionality to create arbitrary PHP scripts in the web root of the application, leading to remote code execution on the server. This vulnerability is fixed in 1.2.29.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...