CVE-2020-8813

Published
View on NVD ↗
CVSS v3
8.8
HIGH
CVSS v2
9.3
HIGH
Affected
1
PROJECT

Description

graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a cookie, if a guest user has the graph real-time privilege.

Cacti ™
GitHubGitHub
1.83K