CVE-2014-4002

Source
https://cve.org/CVERecord?id=CVE-2014-4002
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2014-4002.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2014-4002
Downstream
Related
Withdrawn
2026-01-27T04:12:46.540229Z
Published
2014-07-03T14:55:08Z
Modified
2026-01-27T04:12:46.540229Z
Summary
[none]
Details

Multiple cross-site scripting (XSS) vulnerabilities in Cacti 0.8.8b allow remote attackers to inject arbitrary web script or HTML via the (1) drpaction parameter to cdef.php, (2) datainput.php, (3) dataqueries.php, (4) datasources.php, (5) datatemplates.php, (6) graphtemplates.php, (7) graphs.php, (8) host.php, or (9) hosttemplates.php or the (10) graphtemplateinputid or (11) graphtemplateid parameter to graphtemplatesinputs.php.

References

Affected packages