CVE-2017-12978
Moderate
CVE-2017-12978
lib/html.php in Cacti before 1.1.18 has XSS via the title field of an external link added by an authenticated user.
Exploit probability
0.8%
Published
August 21, 2017
Required by
Not available
Last source change
July 8, 2026
02 / AFFECTED SOFTWARE
Affected packages
23 explicit affected versions
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
CVE-2017-12978
View original source
lib/html.php in Cacti before 1.1.18 has XSS via the title field of an external link added by an authenticated user.
05 / REFERENCES