## https://sploitus.com/exploit?id=KITPLOIT:TOOLS-GITHUB-SASPECT488-CVE-2022-46169
# CVE-2022-46169
Questo repository contiene una Proof of Concept (PoC) per la CVE-2022-46169 - RCE non autenticata su Cacti <= 1.2.22 concatenando un bypass dell'autenticazione e un'iniezione di comandi, descritta da Sonar in questo post del blog. Le stesse vulnerabilità sono state scoperte anche da: Steven Seeley (mr_me) di Source Incite.
## Utilizzo:
root@kitploit:~
positional arguments:
target URL of the Cacti application.
optional arguments:
-f FILE File containing the command
-c CMD Command
--n_host_ids The range of host_ids to try (0 - n)
--n_local_data_ids The range of local_data_ids to try (0 - n)
