CVE Vulnerabilities

CVE-2009-4112

Published: Nov 30, 2009 | Modified: Oct 10, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Cacti 0.8.7e and earlier allows remote authenticated administrators to gain privileges by modifying the Data Input Method for the Linux - Get Memory Usage setting to contain arbitrary commands.

Affected Software

Name Vendor Start Version End Version
Cacti Cacti * 0.8.7e (including)
Cacti Cacti 0.6.7 (including) 0.6.7 (including)
Cacti Cacti 0.8 (including) 0.8 (including)
Cacti Cacti 0.8.1 (including) 0.8.1 (including)
Cacti Cacti 0.8.2 (including) 0.8.2 (including)
Cacti Cacti 0.8.2a (including) 0.8.2a (including)
Cacti Cacti 0.8.3 (including) 0.8.3 (including)
Cacti Cacti 0.8.3a (including) 0.8.3a (including)
Cacti Cacti 0.8.4 (including) 0.8.4 (including)
Cacti Cacti 0.8.5 (including) 0.8.5 (including)
Cacti Cacti 0.8.5a (including) 0.8.5a (including)
Cacti Cacti 0.8.6c (including) 0.8.6c (including)
Cacti Cacti 0.8.6f (including) 0.8.6f (including)
Cacti Cacti 0.8.6i (including) 0.8.6i (including)
Cacti Cacti 0.8.7 (including) 0.8.7 (including)
Cacti Cacti 0.8.7a (including) 0.8.7a (including)

References