Index: security/vuxml/vuln.xml =================================================================== --- security/vuxml/vuln.xml +++ security/vuxml/vuln.xml @@ -58,6 +58,35 @@ * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + Cacti -- Cross-site scripting (XSS) vulnerability in link.php + + + cacti + 1.0.01.1.13 + + + + +

kimiizhang reports:

+
+

Cross-site scripting (XSS) vulnerability in link.php in Cacti
+ 1.1.12 allows remote anonymous users to inject arbitrary web
+ script or HTML via the id parameter.

+
+ +
+ + https://github.com/Cacti/cacti/issues/838 + https://www.cacti.net/release_notes.php?version=1.1.13 + CVE-2017-10970 + + + 2017-07-05 + 2017-07-16 + +
+ Apache httpd -- multiple vulnerabilities