Critical Flaws in Cacti Framework Could Let Attackers Execute Malicious Code

The maintainers of the Cacti open-source network monitoring and fault management framework have addressed a dozen security flaws, including two critical issues that could lead to the execution of arbitrary code. The most severe of the vulnerabilities are listed below -

CVE-2024-25641 (CVSS score: 9.1) - An arbitrary file write vulnerability in the “Package Import” feature that