In clearFilter() in utilities.php in Cacti before 1.2.3, no escaping occurs before printing out the value of the SNMP community string (SNMP Options) in the View poller cache, leading to XSS.
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "0.8.8b+dfsg-5ubuntu0.2+esm1", "binary_name": "cacti" } ] }
{ "ubuntu_priority": "medium" }