FortiGuard
Fortinet’s Global Threat Intelligence and Research
Pwalia
Staff
Staff
Article Id 246209
Description In affected versions of Cacti v1.2.22, a command injection vulnerability allows an unauthenticated user to execute arbitrary code on a server running Cacti. Gaining access to the Cacti instance of an organization could give attackers with the opportunity to learn about the types of devices on the network and their local IP addresses.
CVEs CVE-2022-46169
Severity Medium
Posted on Feb 16, 2023
Outbreak Report Link https://www.fortiguard.com/outbreak-alert/cacti-command-injection
Contributors