|Category:||Web application abuses|
|Title:||Cacti <= 1.2.12 SQLi Vulnerability (Linux)|
|Summary:||Cacti is prone to an SQL injection (SQLi) vulnerability.|
Cacti is prone to an SQL injection (SQLi) vulnerability.
An admin can exploit the vulnerability via the filter parameter in color.php.
Successful exploitation would allow an authenticated attacker
to read or modify sensitive information or execute arbitrary code on the target machine.
Cacti through version 1.2.12.
No known solution is available as of 18th June, 2020.
Information regarding this issue will be updated once solution details are available.
Common Vulnerability Exposure (CVE) ID: CVE-2020-14295|
|Copyright||Copyright (C) 2020 Greenbone Networks GmbH|
|This is only one of 85075 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.