Bug ID 1054742
Summary VUL-0: CVE-2017-12978: cacti: lib/html.php in Cacti before 1.1.18 has XSS via the title field of anexternal link added by an authenticated user.
Classification openSUSE
Product openSUSE Distribution
Version Leap 42.2
Hardware Other
OS Other
Status NEW
Severity Normal
Priority P5 - None
Component Other
Assignee liedke@rz.uni-mannheim.de
Reporter meissner@suse.com
QA Contact qa-bugs@suse.de
Found By Security Response Team
Blocker ---

CVE-2017-12978

lib/html.php in Cacti before 1.1.18 has XSS via the title field of an
external link added by an authenticated user.


References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-12978
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-12978


You are receiving this mail because: