VYPR
High severity8.8NVD Advisory· Published Jan 15, 2020· Updated Jun 17, 2026

CVE-2020-7058

CVE-2020-7058

Description

data_input.php in Cacti 1.2.8 allows remote code execution via a crafted Input String to Data Collection -> Data Input Methods -> Unix -> Ping Host. NOTE: the vendor has stated "This is a false alarm.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:cacti:cacti:1.2.8:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:cacti:cacti:1.2.8:*:*:*:*:*:*:*
    • (no CPE)range: = 1.2.8
  • Cacti/Cactidescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.