Total vulnerabilities in the database
In Cacti before 1.2.11, disabling a user account does not immediately invalidate any permissions granted to that account (e.g., permission to view logs).
Software | From | Fixed in |
---|---|---|
cacti / cacti | - | 1.2.11 |
debian / debian_linux | 9.0 | 9.0.x |
fedoraproject / fedora | 31 | 31.x |
fedoraproject / fedora | 32 | 32.x |