CVE-2017-16785 log
| Source | 
							
  | 
					
| Severity | High | 
| Remote | Yes | 
| Type | Cross-site scripting | 
| Description | Cacti 1.1.27 has reflected XSS via the PATH_INFO to host.php.  | 
					
| Group | Package | Affected | Fixed | Severity | Status | Ticket | 
|---|---|---|---|---|---|---|
| AVG-537 | cacti | 1.1.17-1 | 1.1.28-1 | High | Fixed | 
| Date | Advisory | Group | Package | Severity | Type | 
|---|---|---|---|---|---|
| 02 Dec 2017 | ASA-201712-2 | AVG-537 | cacti | High | multiple issues | 
| References | 
|---|
https://github.com/Cacti/cacti/issues/1071  |