CVE-2014-5025
20.10.2014, 17:55
Cross-site scripting (XSS) vulnerability in data_sources.php in Cacti 0.8.8b allows remote authenticated users with console access to inject arbitrary web script or HTML via the name_cache parameter in a ds_edit action.
| Vendor | Product | Version |
|---|---|---|
| debian | debian_linux | 7.0 |
| opensuse | opensuse | 13.1 |
| opensuse | opensuse | 13.2 |
| cacti | cacti | 0.8.8b:b |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References