lib/rrd.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified parameters.
| Name | Vendor | Start Version | End Version | 
|---|---|---|---|
| Cacti | Cacti | 0.8.7 (including) | 0.8.7g (including) | 
| Cacti | Cacti | 0.8.8 (including) | 0.8.8b (including) | 
| Cacti | Ubuntu | lucid | * | 
| Cacti | Ubuntu | precise | * | 
| Cacti | Ubuntu | quantal | * | 
| Cacti | Ubuntu | saucy | * | 
| Cacti | Ubuntu | upstream | * |