FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

cacti -- multiple vulnerabilities

Affected packages
cacti < 0.8.7f

Details

VuXML ID e02e6a4e-6b26-11df-96b2-0015587e2cc1
Discovery 2010-05-24
Entry 2010-06-24

Multiple vulnerabilities have been reported to exist in older version of Cacti. The release notes of Cacti 0.8.7f summarizes the problems as follows:

References

URL http://php-security.org/2010/05/13/mops-2010-023-cacti-graph-viewer-sql-injection-vulnerability/index.html
URL http://www.bonsai-sec.com/en/research/vulnerabilities/cacti-os-command-injection-0105.php
URL http://www.cacti.net/release_notes_0_8_7f.php
URL http://www.vupen.com/english/advisories/2010/1204