Description | In affected versions of Cacti v1.2.22, a command injection vulnerability allows an unauthenticated user to execute arbitrary code on a server running Cacti. Gaining access to the Cacti instance of an organization could give attackers with the opportunity to learn about the types of devices on the network and their local IP addresses. |
CVEs | CVE-2022-46169 |
Severity | Medium |
Posted on | Feb 16, 2023 |
Outbreak Report Link | https://www.fortiguard.com/outbreak-alert/cacti-command-injection |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.