Medium severity6.5NVD Advisory· Published Oct 27, 2023· Updated Jun 17, 2026
CVE-2023-46490
CVE-2023-46490
Description
SQL Injection vulnerability in Cacti v1.2.25 allows a remote attacker to obtain sensitive information via the form_actions() function in the managers.php function.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:cacti:cacti:1.2.25:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:cacti:cacti:1.2.25:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: =1.2.25
Patches
Vulnerability mechanics
References
2- gist.github.com/ISHGARD-2/a95632111138fcd7ccf7432ccb145b53nvdExploitThird Party Advisory
- github.com/Cacti/cacti/security/advisories/GHSA-f4r3-53jr-654cnvdBroken Link
News mentions
0No linked articles in our index yet.