|Category:||Web application abuses|
|Title:||Cacti < 1.2.11 Multiple Vulnerabilities (Windows)|
|Summary:||Cacti is prone to multiple vulnerabilities.|
Cacti is prone to multiple vulnerabilities.
Cacti is prone to multiple vulnerabilities:
- Disabling a user account does not immediately invalidate any permissions granted to that account
(e.g., permission to view logs) (CVE-2020-13230)
- auth_profile.php?action=edit allows CSRF for an admin email change (CVE-2020-13231)
Cacti prior to version 1.2.11.
Update to version 1.2.11 or later.
Common Vulnerability Exposure (CVE) ID: CVE-2020-13230|
Common Vulnerability Exposure (CVE) ID: CVE-2020-13231
|Copyright||Copyright (C) 2020 Greenbone Networks GmbH|
|This is only one of 85075 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.