cbcvebase.
CVE-2024-29894
published 2024-05-14

CVE-2024-29894: Cacti provides an operational monitoring and fault management framework. Versions of Cacti prior to 1.2.27 contain a residual cross-site scripting…

PriorityP420medium4.7CVSS 3.1
AVNACLPRNUIRSCCNILAN
EPSS
0.90%
55.5th percentile
Cacti provides an operational monitoring and fault management framework. Versions of Cacti prior to 1.2.27 contain a residual cross-site scripting vulnerability caused by an incomplete fix for CVE-2023-50250. `raise_message_javascript` from `lib/functions.php` now uses purify.js to fix CVE-2023-50250 (among others). However, it still generates the code out of unescaped PHP variables `$title` and `$header`. If those variables contain single quotes, they can be used to inject JavaScript code. An attacker exploiting this vulnerability could execute actions on behalf of other users. This ability to impersonate users could lead to unauthorized changes to settings. Version 1.2.27 fixes this issue.

Affected

12 ranges
VendorProductVersion rangeFixed in
cacticacti< 1.2.271.2.27
cacticacti>= 0 < 1.2.24+ds1-1+deb12u31.2.24+ds1-1+deb12u3
cacticacti>= 0 < 1.2.27+ds1-11.2.27+ds1-1
cacticacti>= 0 < 1.2.27+ds1-11.2.27+ds1-1
cacticacti>= 0 < 1.2.10+ds1-1ubuntu1.11.2.10+ds1-1ubuntu1.1
cacticacti>= 0 < 1.2.19+ds1-2ubuntu1.11.2.19+ds1-2ubuntu1.1
cacticacti>= 0 < 1.2.26+ds1-1ubuntu0.11.2.26+ds1-1ubuntu0.1
cacticacti>= 0 < 0.8.8b+dfsg-5ubuntu0.2+esm20.8.8b+dfsg-5ubuntu0.2+esm2
cacticacti>= 0 < 0.8.8f+ds1-4ubuntu4.16.04.2+esm20.8.8f+ds1-4ubuntu4.16.04.2+esm2
cacticacti>= 0 < 1.1.38+ds1-1ubuntu0.1~esm31.1.38+ds1-1ubuntu0.1~esm3
debiancacti< cacti 1.2.24+ds1-1+deb12u3 (bookworm)cacti 1.2.24+ds1-1+deb12u3 (bookworm)
fedoraprojectfedora

CVSS provenance

nvdv3.14.7MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
osv7.2HIGH
vendor_ubuntu9.1CRITICAL
vendor_debian5.4MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.