cacti Info

cacti was added to epel8 repo on 2019-08-18
Page updated: 2025-04-01 04:43
Repo Status - Overall Status

Source NVR: cacti-1.2.27-1.el8 (2022-05-27)

Binary Packages

cacti cacti-1.2.27-1.el8

Bugs

2246973 NEW CVE-2023-46490 cacti: SQL Injection [epel-all]
2255646 NEW TRIAGE CVE-2023-50569 cacti: Reflected Cross Site Scripting (XSS) vulnerability in Cacti [epel-all]
2280493 NEW CVE-2024-27082 cacti: XSS vulnerability when managing trees [epel-all]
2317098 NEW CVE-2024-43363 cacti: Remote code execution via Log Poisoning in Cacti [epel-8]
2317101 NEW CVE-2024-43362 cacti: Stored Cross-site Scripting (XSS) when creating external links in Cacti [epel-8]
2317105 NEW CVE-2024-43364 cacti: Stored Cross-site Scripting (XSS) when creating external links in Cacti [epel-8]
2317108 NEW CVE-2024-43365 cacti: Stored Cross-site Scripting (XSS) when creating external links in Cacti [epel-8]
2342333 NEW CVE-2024-45598 cacti: Cacti has a Local File Inclusion (LFI) Vulnerability via Poller Standard Error Log Path [epel-8]
2342339 NEW CVE-2025-24367 cacti: Cacti allows Arbitrary File Creation leading to RCE [epel-8]
2342354 NEW CVE-2025-24368 cacti: Cacti has a SQL Injection vulnerability when using tree rules through Automation API [epel-8]
2342357 NEW CVE-2025-22604 cacti: Cacti has Authenticated RCE via multi-line SNMP responses [epel-8]
2342359 NEW CVE-2024-54146 cacti: Cacti has a SQL Injection vulnerability when view host template [epel-8]
2342361 NEW CVE-2024-54145 cacti: Cacti has a SQL Injection vulnerability when request automation devices [epel-8]
2345160 NEW CVE-2025-26520 cacti: SQL Injection in Cacti [epel-8]

Install Failures