In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsThere is no fixed version for Debian:11
cacti
.
Note: Versions mentioned in the description apply only to the upstream cacti
package and not the cacti
package as distributed by Debian
.
See How to fix?
for Debian:11
relevant fixed versions and status.
Cacti is an open source performance and fault management framework. Some of the data stored in automation_tree_rules.php is not thoroughly checked and is used to concatenate the SQL statement in build_rule_item_filter() function from lib/api_automation.php, resulting in SQL injection. This vulnerability is fixed in 1.2.29.