EyesOfNetwork before 07-07-2021 has a Remote Code Execution vulnerability on the mail options configuration page. In the location of the "sendmail" application in the "cacti" configuration page (by default/usr/sbin/sendmail) it is possible to execute any command, which will be executed when we make a test of the configuration ("send test mail").
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-06-30T10:41:32
Updated: 2024-08-04T02:51:06.278Z
Reserved: 2021-09-07T00:00:00
Link: CVE-2021-40643
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-06-30T11:15:07.990
Modified: 2024-11-21T06:24:29.737
Link: CVE-2021-40643
Redhat
No data.