CVE-2018-10060
12.04.2018, 16:29
Cacti before 1.1.37 has XSS because it does not properly reject unintended characters, related to use of the sanitize_uri function in lib/functions.php.
Vendor | Product | Version |
---|---|---|
cacti | cacti | 𝑥 ≤ 1.1.36 |
debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References