CVE-2017-12065: Critical severity Cacti Cacti vulnerability
Published Aug 1, 2017
·Updated
spikekill.php in Cacti before 1.1.16 might allow remote attackers to execute arbitrary code via the avgnan, outlier-start, or outlier-end parameter.
Affected Software
1 affected component
Cacti Cacti<=1.1.15
Remediation
Patch Available
Event History
Aug 1, 2017
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-12065?
CVE-2017-12065 is considered a critical vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2017-12065?
To fix CVE-2017-12065, upgrade Cacti to version 1.1.16 or later.
3
What software is affected by CVE-2017-12065?
CVE-2017-12065 affects Cacti versions prior to 1.1.16.
4
What type of attacks can be performed using CVE-2017-12065?
CVE-2017-12065 allows remote attackers to execute arbitrary code on the affected Cacti installations.
5
What parameters are exploited in CVE-2017-12065?
The parameters exploited in CVE-2017-12065 include avgnan, outlier-start, and outlier-end.