CVE-2018-10060
12.04.2018, 16:29
Cacti before 1.1.37 has XSS because it does not properly reject unintended characters, related to use of the sanitize_uri function in lib/functions.php.
| Vendor | Product | Version |
|---|---|---|
| cacti | cacti | 𝑥 ≤ 1.1.36 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References