Vulnerability Found in Cacti Software (CVE-2025-22604) Allows Remote Code Execution

An urgent security issue has been revealed in the Cacti open-source software used for monitoring networks and managing faults, which could potentially enable a verified attacker to execute code remotely on vulnerable systems.

An urgent security issue has been revealed in the Cacti open-source software used for monitoring networks and managing faults, which could potentially enable a verified attacker to execute code remotely on vulnerable systems.
This vulnerability, identified as CVE-2025-22604, has been given a CVSS severity rating of 9.1 out of 10.0.
“Authenticated users are able to insert malicious code due to a weakness in the SNMP parser that handles multiple lines of data.”

About Author

Subscribe To InfoSec Today News

You have successfully subscribed to the newsletter

There was an error while trying to send your request. Please try again.

World Wide Crypto will use the information you provide on this form to be in touch with you and to provide updates and marketing.