Cacti servers under attack by attackers exploiting CVE-2022-46169
A command injection vulnerability allows an unauthenticated user to execute arbitrary code on a server running Cacti, if a specific data source was selected for any monitored device....
Reference:
[1] https://nvd.nist.gov/vuln/detail/CVE-2022-46169
[2] https://github.com/Cacti/cacti/security/advisories/GHSA-6p93-p743-35gf
[3] https://github.com/0xf4n9x/CVE-2022-46169