Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-48538

In Cacti 1.2.19, there is an authentication bypass in the web login functionality because of improper validation in the PHP code: cacti_ldap_auth() allows a zero as the password.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.5%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2022-48538
  • Cacti » Cacti » Version: 1.2.19
    cpe:2.3:a:cacti:cacti:1.2.19


Contact Us

Shodan ® - All rights reserved