Critical Flaws in Cacti Framework Could Let Attackers Execute Malicious Code
Critical Flaws in Cacti Framework Could Let Attackers Execute Malicious Code
14 May 2024
The maintainers of the Cacti open-source network monitoring and fault management framework have addressed a dozen security flaws, including two critical issues that could lead to the execution of arbitrary code.
The most severe of the vulnerabilities are listed below -
CVE-2024-25641 (CVSS score: 9.1) - An arbitrary file write vulnerability in the "Package Import" feature that