Bug ID 1188188
Summary VUL-0: CVE-2020-14424: cacti: Lack of escaping on template import can lead to XSS exposure under 'midwinter' theme
Classification openSUSE
Product openSUSE Distribution
Version Leap 15.3
Hardware Other
OS Other
Status NEW
Severity Normal
Priority P5 - None
Component Security
Assignee Andreas.Stieger@gmx.de
Reporter Andreas.Stieger@gmx.de
QA Contact qa-bugs@suse.de
CC security-team@suse.de
Found By Security Response Team
Blocker ---

Fixed in cacti 1.2.18:
Lack of escaping on template import can lead to XSS exposure under 'midwinter'
theme

https://github.com/Cacti/cacti/pull/4261


You are receiving this mail because: