CVE-2025-66399 - CVE House
Back to Database
Status published High CVE-2025-66399

SNMP Command Injection leads to RCE in Cacti

Vulnerability Description

Cacti is an open source performance and fault management framework. Prior to 1.2.29, there is an input-validation flaw in the SNMP device configuration functionality. An authenticated Cacti user can supply crafted SNMP community strings containing control characters (including newlines) that are accepted, stored verbatim in the database, and later embedded into backend SNMP operations. In environments where downstream SNMP tooling or wrappers interpret newline-separated tokens as command boundaries, this can lead to unintended command execution with the privileges of the Cacti process. This vulnerability is fixed in 1.2.29.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-66399

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Elhussain Fathy (0xSphinx)

Affected Vendor

Affected Software

cacti
Vulnerable Versions:
< 1.2.29

Timeline

Official Publish: December 2nd, 2025
Last Modified: December 8th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)