https://reddit.com/r/cybersecurity/comments/1u7q6ta/cve202639949_authenticated_remote_code_execution/: CVE-2026-39949: Authenticated Remote Code Execution in Cacti ≤ 1.2.30
Published Jun 16, 2026
·Updated
Affected Software
1 affected component
Cacti Cacti<=1.2.30
Frequently Asked Questions
1
What is the severity of CVE-2026-39949?
CVE-2026-39949 has a critical severity rating due to its potential to allow authenticated users to execute arbitrary commands on the underlying OS.
2
How do I fix CVE-2026-39949?
To fix CVE-2026-39949, update Cacti to the latest version that addresses this vulnerability.
3
Who is affected by CVE-2026-39949?
CVE-2026-39949 affects Cacti versions 1.2.30 and earlier, specifically users with graph management privileges.
4
What types of attacks can exploit CVE-2026-39949?
CVE-2026-39949 can be exploited for authenticated remote code execution, potentially allowing attackers to take control of the system.
5
Is any user role at risk for CVE-2026-39949?
Yes, any user with graph management privileges in Cacti is at risk due to the authenticated remote code execution vulnerability.