CVE-2017-16641
Published
CVSS v3
N/A
CVSS v2
9
HIGH
Affected
1
PROJECT
Description
lib/rrd.php in Cacti 1.1.27 allows remote authenticated administrators to execute arbitrary OS commands via the path_rrdtool parameter in an action=save request to settings.php.