Weakness Name | Source | |
---|---|---|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users. |
Metrics | Score | Severity | CVSS Vector | Source |
---|---|---|---|---|
V2 | 4.3 | AV:N/AC:M/Au:N/C:N/I:P/A:N | [email protected] |
Cacti>>Cacti >> Version To (including) 0.8.8b
Cacti>>Cacti >> Version 0.8
Cacti>>Cacti >> Version 0.8.1
Cacti>>Cacti >> Version 0.8.2
Cacti>>Cacti >> Version 0.8.2a
Cacti>>Cacti >> Version 0.8.3
Cacti>>Cacti >> Version 0.8.3a
Cacti>>Cacti >> Version 0.8.4
Cacti>>Cacti >> Version 0.8.5
Cacti>>Cacti >> Version 0.8.5a
Cacti>>Cacti >> Version 0.8.6
Cacti>>Cacti >> Version 0.8.6a
Cacti>>Cacti >> Version 0.8.6b
Cacti>>Cacti >> Version 0.8.6c
Cacti>>Cacti >> Version 0.8.6d
Cacti>>Cacti >> Version 0.8.6e
Cacti>>Cacti >> Version 0.8.6f
Cacti>>Cacti >> Version 0.8.6g
Cacti>>Cacti >> Version 0.8.6h
Cacti>>Cacti >> Version 0.8.6i
Cacti>>Cacti >> Version 0.8.6j
Cacti>>Cacti >> Version 0.8.6k
Cacti>>Cacti >> Version 0.8.7
Cacti>>Cacti >> Version 0.8.7a
Cacti>>Cacti >> Version 0.8.7b
Cacti>>Cacti >> Version 0.8.7c
Cacti>>Cacti >> Version 0.8.7d
Cacti>>Cacti >> Version 0.8.7e
Cacti>>Cacti >> Version 0.8.7f
Cacti>>Cacti >> Version 0.8.7g
Cacti>>Cacti >> Version 0.8.7h
Cacti>>Cacti >> Version 0.8.7i
Cacti>>Cacti >> Version 0.8.8
Cacti>>Cacti >> Version 0.8.8a
Opensuse>>Opensuse >> Version 13.1
Opensuse>>Opensuse >> Version 13.2