Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2024-25641
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Cacti RCE vulnerability when importing packages
Source: NVD (National Vulnerability Database)
Vulnerability Description
Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, an arbitrary file write vulnerability, exploitable through the "Package Import" feature, allows authenticated users having the "Import Templates" permission to execute arbitrary PHP code on the web server. The vulnerability is located within the `import_package()` function defined into the `/lib/import.php` script. The function blindly trusts the filename and file content provided within the XML data, and writes such files into the Cacti base path (or even outside, since path traversal sequences are not filtered). This can be exploited to write or overwrite arbitrary files on the web server, leading to execution of arbitrary PHP code or other security impacts. Version 1.2.27 contains a patch for this issue.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
输入验证不恰当
Source: NVD (National Vulnerability Database)
Vulnerability Title
Cacti 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Cacti是Cacti团队的一套开源的网络流量监测和分析工具。该工具通过snmpget来获取数据,使用RRDtool绘画图形进行分析,并提供数据和用户管理功能。 Cacti 1.2.27之前版本存在安全漏洞,该漏洞源于存在任意文件写入漏洞,允许经过身份验证的用户在Web服务器上执行任意PHP代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
Cacticacti < 1.2.27 -
II. Public POCs for CVE-2024-25641
#POC DescriptionSource LinkShenlong Link
1Nonehttps://github.com/5ma1l/CVE-2024-25641POC Details
2CVE-2024-25641 - RCE Automated Exploit - Cacti 1.2.26https://github.com/thisisveryfunny/CVE-2024-25641-RCE-Automated-Exploit-Cacti-1.2.26POC Details
3PoC for CVE-2024-25641 Authenticated RCE on Cacti v1.2.26https://github.com/Safarchand/CVE-2024-25641POC Details
4Fully automated PoC - CVE-2024-25641 - RCE - Cacti < v1.2.26 🌵https://github.com/StopThatTalace/CVE-2024-25641-CACTI-RCE-1.2.26POC Details
5PoC for CVE-2024-25641 Authenticated RCE on Cacti v1.2.26https://github.com/XiaomingX/cve-2024-25641-pocPOC Details
6POC exploit for CVE-2024-25641https://github.com/D3Ext/CVE-2024-25641POC Details
7Nonehttps://github.com/regantemudo/CVE-2024-25641-Exploit-for-Cacti-1.2.26POC Details
8Cacti exploithttps://github.com/GabrielCF10/CVE-2024-25641---CactiPOC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2024-25641
Please Login to view more intelligence information
IV. Related Vulnerabilities
V. Comments for CVE-2024-25641

No comments yet


Leave a comment