Page 11 of 51 results (0.007 seconds)
CVSS: 5.4EPSS: 0%CPEs: 1EXPL: 0
CVE-2017-10970
https://notcve.org/view.php?id=CVE-2017-10970
Cross-site scripting (XSS) vulnerability in link.php in Cacti 1.1.12 allows remote anonymous users to inject arbitrary web script or HTML via the id parameter, related to the die_html_input_error function in lib/html_validate.php. Una vulnerabilidad de Cross-Site Scripting (XSS) en link.php en Cacti 1.1.12 permite que usuarios remotos anónimos inyecten scripts web o HTML arbitrarios mediante el parámetro id, relacionado con la función die_html_input_error en lib/html_validate.php. • http://www.securitytracker.com/id/1038908 https://github.com/Cacti/cacti/issues/838 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •