CVE-2017-16660: Critical severity cacti vulnerability
Published Nov 8, 2017
·Updated
Cacti 1.1.27 allows remote authenticated administrators to conduct Remote Code Execution attacks by placing the Log Path under the web root, and then making a remoteagent.php request containing PHP code in a Client-ip header.
Affected Software
1 affected component
Cacti Cacti=1.1.27
Remediation
Patch Available
Event History
Nov 8, 2017
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-16660?
CVE-2017-16660 has a high severity rating due to its potential for Remote Code Execution.
2
How do I fix CVE-2017-16660?
To fix CVE-2017-16660, ensure that the Log Path is located outside the web root and update to a newer version of Cacti.
3
Who is affected by CVE-2017-16660?
CVE-2017-16660 affects Cacti version 1.1.27, particularly remote authenticated administrators.
4
What type of attack does CVE-2017-16660 enable?
CVE-2017-16660 enables Remote Code Execution attacks by exploiting the handling of the Client-ip header.
5
Can CVE-2017-16660 be exploited without authentication?
No, CVE-2017-16660 requires remote authentication for exploitation.