CVE Vulnerabilities

CVE-2009-4112

Published: Nov 30, 2009 | Modified: Oct 10, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
3.6 LOW
AV:N/AC:H/Au:S/C:P/I:P/A:N
RedHat/V3
Ubuntu
NEGLIGIBLE

Cacti 0.8.7e and earlier allows remote authenticated administrators to gain privileges by modifying the Data Input Method for the Linux - Get Memory Usage setting to contain arbitrary commands.

Affected Software

Name Vendor Start Version End Version
Cacti Cacti * 0.8.7e (including)
Cacti Cacti 0.6.7 (including) 0.6.7 (including)
Cacti Cacti 0.8 (including) 0.8 (including)
Cacti Cacti 0.8.1 (including) 0.8.1 (including)
Cacti Cacti 0.8.2 (including) 0.8.2 (including)
Cacti Cacti 0.8.2a (including) 0.8.2a (including)
Cacti Cacti 0.8.3 (including) 0.8.3 (including)
Cacti Cacti 0.8.3a (including) 0.8.3a (including)
Cacti Cacti 0.8.4 (including) 0.8.4 (including)
Cacti Cacti 0.8.5 (including) 0.8.5 (including)
Cacti Cacti 0.8.5a (including) 0.8.5a (including)
Cacti Cacti 0.8.6c (including) 0.8.6c (including)
Cacti Cacti 0.8.6f (including) 0.8.6f (including)
Cacti Cacti 0.8.6i (including) 0.8.6i (including)
Cacti Cacti 0.8.7 (including) 0.8.7 (including)
Cacti Cacti 0.8.7a (including) 0.8.7a (including)
Cacti Ubuntu dapper *
Cacti Ubuntu devel *
Cacti Ubuntu hardy *
Cacti Ubuntu intrepid *
Cacti Ubuntu jaunty *
Cacti Ubuntu karmic *
Cacti Ubuntu lucid *

References