CVE-2017-16641

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
9
HIGH
Affected
1
PROJECT

Description

lib/rrd.php in Cacti 1.1.27 allows remote authenticated administrators to execute arbitrary OS commands via the path_rrdtool parameter in an action=save request to settings.php.

Cacti ™
GitHubGitHub
1.83K