Skip to content
COOEY

EXPOSURES › CVE-2022-46169

CVE-2022-46169

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2023-02-16 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2022-46169 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 90/100 rceexploited-in-wildunpatched

Cacti command injection allowed unauthenticated code execution.

Cacti, a network monitoring tool, had a critical command injection vulnerability that was actively exploited, enabling unauthenticated attackers to execute arbitrary code. This exposed sensitive data and systems to potential compromise.

Shame score — Critical, actively exploited vulnerability leading to unauthenticated code execution.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Cacti contains a command injection vulnerability that allows an unauthenticated user to execute code.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.