CVE Vulnerabilities

CVE-2014-2328

Published: Apr 23, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

lib/graph_export.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote authenticated users to execute arbitrary commands via shell metacharacters in unspecified vectors.

Affected Software

NameVendorStart VersionEnd Version
CactiCacti0.8.7 (including)0.8.7g (including)
CactiCacti0.8.8 (including)0.8.8b (including)
CactiUbuntulucid*
CactiUbuntuprecise*
CactiUbuntuquantal*
CactiUbuntusaucy*
CactiUbuntuupstream*

References