Record summary

CVE-2021-26247 has a selected CVSS score of 6.1 (medium); EIP currently links 1 Nuclei template.

Description

As an unauthenticated remote user, visit "http://<CACTI_SERVER>/auth_changepassword.php?ref=<script>alert(1)</script>" to successfully execute the JavaScript payload present in the "ref" URL parameter.

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

Affected products and versions

1
ProductSourceVersion rangeStatus

Cacti

CVE List0.8.7gaffected

Nuclei templates

1
ProjectDiscoveryMEDIUMCacti - Cross-Site ScriptingCVSS 6.1

Cacti contains a cross-site scripting vulnerability via "http://<CACTI_SERVER>/auth_changepassword.php?ref=<script>alert(1)</script>" which can successfully execute the JavaScript payload present in the "ref" URL parameter.

Impact

Successful exploitation of this vulnerability could allow an attacker to execute arbitrary JavaScript code in the context of the victim's browser, leading to session hijacking, defacement, or theft of sensitive information.

Remediation

Apply the latest security patches or upgrade to a patched version of Cacti to mitigate this vulnerability.

WeaknessesCWE-79
AuthorsdhiyaneshDK
Template tagscvecve2021cactixssvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
CPE: cpe:2.3:a:cacti:cacti:0.8.7g:*:*:*:*:*:*:*
Shodan: http.title:"login to cacti"
Shodan: http.title:"cacti"
Shodan: http.favicon.hash:"-1797138069"
FOFA: icon_hash="-1797138069"
FOFA: title="cacti"
FOFA: title="login to cacti"
Google: intitle:"cacti"
Google: intitle:"login to cacti"

Source: ProjectDiscovery

References

2