Cross-Site Scripting (XSS) Vulnerability in Cacti's host.php

Cross-Site Scripting (XSS) Vulnerability in Cacti's host.php

CVE-2018-20726 · LOW Severity

AV:N/AC:M/AU:S/C:N/I:P/A:N

A cross-site scripting (XSS) vulnerability exists in host.php (via tree.php) in Cacti before 1.2.0 due to lack of escaping of unintended characters in the Website Hostname field for Devices.

Learn more about our Web App Pen Testing.