auth_login.php in Cacti before 1.0.0 allows remote authenticated users who use web authentication to bypass intended access restrictions by logging in as a user not in the cacti database, because the guest user is not considered. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-2313.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
https://github.com/Cacti/cacti/commit/69983495cd41bf0903fe02baeef84b1fa85f2846 | issue tracking third party advisory patch |
http://www.cacti.net/release_notes_1_0_0.php | issue tracking release notes vendor advisory |
http://bugs.cacti.net/view.php?id=2697 | broken link |
https://web.archive.org/web/20160817090458/http://bugs.cacti.net/view.php?id=2697 | issue tracking third party advisory |