漏洞描述 弱口令漏洞指的是系统中使用了简单、容易猜测或常见的密码,导致攻击者可以通过猜测或暴力破解的方式轻易获取账户权限,进而访问或控制受影响的系统资源。这种漏洞通常由于缺乏有效的密码策略或用户对安全意识的忽视造成。
相关漏洞推荐 POC CVE-2020-8813: Cacti v1.2.8 - Remote Code Execution POC CVE-2021-26247: Cacti - Cross-Site Scripting POC CVE-2022-46169: Cacti <=1.2.22 - Remote Command Injection POC CVE-2023-30534: Cacti < 1.2.25 Insecure Deserialization POC CVE-2023-39361: Cacti 1.2.24 - SQL Injection POC CVE-2024-29895: Cacti cmd_realtime.php - Command Injection POC CVE-2022-46169: Cacti remote_agent.php 远程命令执行漏洞 POC cacti-weathermap-file-write: Cacti Weathermap File Write POC cacti-weathermap-file-write: Cacti Weathermap File Write Cacti cmd_realtime CVE-2024-29895 命令注入漏洞 Cacti CVE-2024-25641 任意文件写入漏洞 Cacti spikekill.php 跨站脚本攻击漏洞 Cacti managers.php CVE-2023-51448 SQL注入漏洞