CVE-2017-11691 REJECTED

Cross-site scripting (XSS) vulnerability in auth_profile.php in Cacti 1.1.13 allows remote attackers to inject arbitrary web script or HTML via specially crafted HTTP Referer headers.

EPSS 0.51% · 66.0th percentile

Risk Scores

EPSS Score
0.51%
66.0th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTScacti0, 1.1.18+ds1-1, 1.1.27+ds1-2

Timeline

References

Open in Interactive Console →