CVE-2018-10061
12.04.2018, 16:29
Cacti before 1.1.37 has XSS because it makes certain htmlspecialchars calls without the ENT_QUOTES flag (these calls occur when the html_escape function in lib/html.php is not used).
Vendor | Product | Version |
---|---|---|
cacti | cacti | 𝑥 ≤ 1.1.36 |
debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References