Cacti upstream released a new version fixing multiple security issues. CVE-2016-2131 was already fixed once but it seems that the fix wasn't enough. It is also fixing CVE-2014-4000 and some other potential security issues. References: http://www.cacti.net/release_notes_1_0_0.php
Created cacti tracking bugs for this issue: Affects: epel-all [bug 1417605] Affects: fedora-all [bug 1417604]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.