CVE Vulnerabilities

CVE-2002-1477

Published: Apr 22, 2003 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

graphs.php in Cacti before 0.6.8 allows remote authenticated Cacti administrators to execute arbitrary commands via shell metacharacters in the title during edit mode.

Affected Software

Name Vendor Start Version End Version
Cacti The_cacti_group 0.5 (including) 0.5 (including)
Cacti The_cacti_group 0.6 (including) 0.6 (including)
Cacti The_cacti_group 0.6.1 (including) 0.6.1 (including)
Cacti The_cacti_group 0.6.2 (including) 0.6.2 (including)
Cacti The_cacti_group 0.6.3 (including) 0.6.3 (including)
Cacti The_cacti_group 0.6.4 (including) 0.6.4 (including)
Cacti The_cacti_group 0.6.5 (including) 0.6.5 (including)
Cacti The_cacti_group 0.6.6 (including) 0.6.6 (including)
Cacti The_cacti_group 0.6.7 (including) 0.6.7 (including)
Cacti The_cacti_group 0.6.8 (including) 0.6.8 (including)

References