CVE-2024-30268
Status: DeferredMedium (6.1)—
Cacti provides an operational monitoring and fault management framework. A reflected cross-site scripting vulnerability on the 1.3.x DEV branch allows attackers to obtain cookies of administrator and other users and fake their login using obtained cookies. This issue is fixed in commit a38b9046e9772612fda847b46308f9391a49891e.
CVSS
- Version: 3.1
- Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
- Base score: 6.1
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 0.59%
- Percentile among all scored CVEs: 46
- Score date: 10/6/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (1)
⚠ AI-inferred from the description — NVD hasn't analyzed this CVE yet, these aren't verified CPEs.
CWEs
- CWE-79
References
- https://github.com/Cacti/cacti/blob/08497b8bcc6a6037f7b1aae303ad8f7dfaf7364e/settings.php#L66
- https://github.com/Cacti/cacti/commit/a38b9046e9772612fda847b46308f9391a49891e
- https://github.com/Cacti/cacti/security/advisories/GHSA-9m3v-whmr-pc2q
- https://github.com/Cacti/cacti/blob/08497b8bcc6a6037f7b1aae303ad8f7dfaf7364e/settings.php#L66
- https://github.com/Cacti/cacti/commit/a38b9046e9772612fda847b46308f9391a49891e
- https://github.com/Cacti/cacti/security/advisories/GHSA-9m3v-whmr-pc2q
Raw JSON (NVD)
Show
{
"id": "CVE-2024-30268",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2024-30268",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "poc"
},
{
"automatable": "no"
},
{
"technicalImpact": "partial"
}
],
"version": "2.0.3",
"timestamp": "2024-05-13T16:33:01.169282Z"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "security-advisories@github.com",
"cvssData": {
"scope": "CHANGED",
"version": "3.1",
"baseScore": 6.1,
"attackVector": "NETWORK",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N",
"integrityImpact": "LOW",
"userInteraction": "REQUIRED",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "NONE",
"confidentialityImpact": "LOW"
},
"impactScore": 2.7,
"exploitabilityScore": 2.8
}
]
},
"affected": [
{
"source": "security-advisories@github.com",
"affectedData": [
{
"vendor": "Cacti",
"product": "cacti",
"versions": [
{
"status": "affected",
"version": "= 1.3.x DEV"
}
]
}
]
},
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"affectedData": [
{
"cpes": [
"cpe:2.3:a:cacti:cacti:1.3*:*:*:*:*:*:*:*"
],
"vendor": "cacti",
"product": "cacti",
"versions": [
{
"status": "affected",
"version": "1.3.*"
}
],
"defaultStatus": "unknown"
}
]
}
],
"published": "2024-05-14T15:22:18.957",
"references": [
{
"url": "https://github.com/Cacti/cacti/blob/08497b8bcc6a6037f7b1aae303ad8f7dfaf7364e/settings.php#L66",
"source": "security-advisories@github.com"
},
{
"url": "https://github.com/Cacti/cacti/commit/a38b9046e9772612fda847b46308f9391a49891e",
"source": "security-advisories@github.com"
},
{
"url": "https://github.com/Cacti/cacti/security/advisories/GHSA-9m3v-whmr-pc2q",
"source": "security-advisories@github.com"
},
{
"url": "https://github.com/Cacti/cacti/blob/08497b8bcc6a6037f7b1aae303ad8f7dfaf7364e/settings.php#L66",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://github.com/Cacti/cacti/commit/a38b9046e9772612fda847b46308f9391a49891e",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://github.com/Cacti/cacti/security/advisories/GHSA-9m3v-whmr-pc2q",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Deferred",
"weaknesses": [
{
"type": "Secondary",
"source": "security-advisories@github.com",
"description": [
{
"lang": "en",
"value": "CWE-79"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Cacti provides an operational monitoring and fault management framework. A reflected cross-site scripting vulnerability on the 1.3.x DEV branch allows attackers to obtain cookies of administrator and other users and fake their login using obtained cookies. This issue is fixed in commit a38b9046e9772612fda847b46308f9391a49891e."
},
{
"lang": "es",
"value": "Cacti proporciona un framework de monitoreo operativo y gestión de fallas. Una vulnerabilidad de Cross Site Scripting reflejada en la rama DEV 1.3.x permite a los atacantes obtener cookies del administrador y otros usuarios y falsificar su inicio de sesión utilizando las cookies obtenidas. Este problema se solucionó en el commit a38b9046e9772612fda847b46308f9391a49891e."
}
],
"lastModified": "2026-06-17T07:26:38.420",
"sourceIdentifier": "security-advisories@github.com"
}