Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-4112. PoCs published by MustLive.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in the Joomla! ProofReader component by injecting arbitrary JavaScript code via malformed URIs. The PoC shows how an attacker can execute script code in the context of the affected site to steal cookie-based authentication credentials.
Description
Cacti 0.8.7e and earlier allows remote authenticated administrators to gain privileges by modifying the "Data Input Method" for the "Linux - Get Memory Usage" setting to contain arbitrary commands.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in the Joomla! ProofReader component by injecting arbitrary JavaScript code via malformed URIs. The PoC shows how an attacker can execute script code in the context of the affected site to steal cookie-based authentication credentials.