Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cacti cacti 0.6.3 vulnerabilities and exploits
(subscribe to this query)
668
VMScore
CVE-2002-1477
graphs.php in Cacti prior to 0.6.8 allows remote authenticated Cacti administrators to execute arbitrary commands via shell metacharacters in the title during edit mode.
The Cacti Group Cacti 0.5
The Cacti Group Cacti 0.6.7
The Cacti Group Cacti 0.6.4
The Cacti Group Cacti 0.6.1
The Cacti Group Cacti 0.6
The Cacti Group Cacti 0.6.6
The Cacti Group Cacti 0.6.5
The Cacti Group Cacti 0.6.3
The Cacti Group Cacti 0.6.8
The Cacti Group Cacti 0.6.2
890
VMScore
CVE-2002-1478
Cacti prior to 0.6.8 allows malicious users to execute arbitrary commands via the "Data Input" option in console mode.
The Cacti Group Cacti 0.5
The Cacti Group Cacti 0.6.7
The Cacti Group Cacti 0.6.4
The Cacti Group Cacti 0.6.1
The Cacti Group Cacti 0.6
The Cacti Group Cacti 0.6.6
The Cacti Group Cacti 0.6.5
The Cacti Group Cacti 0.6.3
The Cacti Group Cacti 0.6.8
The Cacti Group Cacti 0.6.2
409
VMScore
CVE-2002-1479
Cacti prior to 0.6.8 stores a MySQL username and password in plaintext in config.php, which has world-readable permissions, which allows local users to modify databases as the Cacti user and possibly gain privileges.
The Cacti Group Cacti 0.5
The Cacti Group Cacti 0.6.7
The Cacti Group Cacti 0.6.4
The Cacti Group Cacti 0.6.1
The Cacti Group Cacti 0.6
The Cacti Group Cacti 0.6.6
The Cacti Group Cacti 0.6.5
The Cacti Group Cacti 0.6.3
The Cacti Group Cacti 0.6.8
The Cacti Group Cacti 0.6.2
755
VMScore
CVE-2010-1431
SQL injection vulnerability in templates_export.php in Cacti 0.8.7e and previous versions allows remote malicious users to execute arbitrary SQL commands via the export_item_id parameter.
Cacti Cacti 0.8.5a
Cacti Cacti 0.8.5
Cacti Cacti 0.8.7
Cacti Cacti
Cacti Cacti 0.8.6d
Cacti Cacti 0.8.6b
Cacti Cacti 0.6.3
Cacti Cacti 0.6.2
Cacti Cacti 0.6.7
Cacti Cacti 0.8
Cacti Cacti 0.8.4
Cacti Cacti 0.8.3a
Cacti Cacti 0.8.6h
Cacti Cacti 0.8.6g
Cacti Cacti 0.6.5
Cacti Cacti 0.6.4
Cacti Cacti 0.8.6j
Cacti Cacti 0.8.7a
Cacti Cacti 0.8.6f
Cacti Cacti 0.8.6c
Cacti Cacti 0.8.7d
Cacti Cacti 0.8.7c
1 EDB exploit
578
VMScore
CVE-2010-1645
Cacti prior to 0.8.7f, as used in Red Hat High Performance Computing (HPC) Solution and other products, allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in (1) the FQDN field of a Device or (2) the Vertical Label field of a Graph T...
Cacti Cacti 0.6.1
Cacti Cacti 0.6
Cacti Cacti 0.6.6
Cacti Cacti 0.6.5
Cacti Cacti 0.6.2
Cacti Cacti 0.8.7
Cacti Cacti 0.8.6g
Cacti Cacti 0.8.6
Cacti Cacti 0.8.7a
Cacti Cacti 0.6.8a
Cacti Cacti 0.8.2
Cacti Cacti 0.6.7
Cacti Cacti 0.8.5
Cacti Cacti 0.8.6b
Cacti Cacti 0.8.2a
Cacti Cacti 0.8.7b
Cacti Cacti 0.8.6c
Cacti Cacti 0.8.3a
Cacti Cacti 0.8.7d
Cacti Cacti 0.6.8
Cacti Cacti 0.8.6i
Cacti Cacti 0.6.3
383
VMScore
CVE-2010-1644
Multiple cross-site scripting (XSS) vulnerabilities in Cacti prior to 0.8.7f, as used in Red Hat High Performance Computing (HPC) Solution and other products, allow remote malicious users to inject arbitrary web script or HTML via the (1) hostname or (2) description parameter to ...
Cacti Cacti 0.5
Cacti Cacti 0.8.6k
Cacti Cacti 0.8.6d
Cacti Cacti 0.6.3
Cacti Cacti 0.8.7
Cacti Cacti 0.8.5a
Cacti Cacti 0.8.3
Cacti Cacti 0.6.8
Cacti Cacti 0.8.2
Cacti Cacti 0.8.5
Cacti Cacti 0.6.6
Cacti Cacti 0.8.7d
Cacti Cacti 0.8.7b
Cacti Cacti 0.8.7a
Cacti Cacti 0.6.2
Cacti Cacti 0.6.5
Cacti Cacti 0.8.6f
Cacti Cacti 0.8.6g
Cacti Cacti 0.8.6j
Cacti Cacti 0.8.7c
Cacti Cacti 0.6.1
Cacti Cacti 0.8
668
VMScore
CVE-2010-2092
SQL injection vulnerability in graph.php in Cacti 0.8.7e and previous versions allows remote malicious users to execute arbitrary SQL commands via a crafted rra_id parameter in a GET request in conjunction with a valid rra_id value in a POST request or a cookie, which causes the ...
Cacti Cacti 0.6.6
Cacti Cacti 0.6.7
Cacti Cacti 0.8.3
Cacti Cacti 0.8.3a
Cacti Cacti 0.8.6d
Cacti Cacti 0.8.6f
Cacti Cacti 0.8.7a
Cacti Cacti 0.8.7b
Cacti Cacti 0.6.4
Cacti Cacti 0.6.5
Cacti Cacti 0.8.2
Cacti Cacti 0.8.2a
Cacti Cacti 0.8.6b
Cacti Cacti 0.8.6c
Cacti Cacti 0.8.6k
Cacti Cacti 0.8.7
Cacti Cacti 0.6
Cacti Cacti 0.6.1
Cacti Cacti 0.6.8
Cacti Cacti 0.6.8a
Cacti Cacti 0.8.4
Cacti Cacti 0.8.5
383
VMScore
CVE-2011-5223
Cross-site request forgery (CSRF) vulnerability in logout.php in Cacti prior to 0.8.7i allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.
Cacti Cacti 0.8.7d
Cacti Cacti 0.8.7c
Cacti Cacti 0.8.6g
Cacti Cacti 0.8.6c
Cacti Cacti 0.8.5
Cacti Cacti 0.8.4
Cacti Cacti 0.6.8
Cacti Cacti 0.6.7
Cacti Cacti 0.6.6
Cacti Cacti 0.5
Cacti Cacti 0.8.7b
Cacti Cacti 0.8.7a
Cacti Cacti 0.8.7
Cacti Cacti 0.8.6h
Cacti Cacti 0.8.6k
Cacti Cacti 0.8.3
Cacti Cacti 0.8.3a
Cacti Cacti 0.6.5
Cacti Cacti 0.6.4
Cacti Cacti
Cacti Cacti 0.8.7g
Cacti Cacti 0.8.6a
435
VMScore
CVE-2010-2543
Cross-site scripting (XSS) vulnerability in include/top_graph_header.php in Cacti prior to 0.8.7g allows remote malicious users to inject arbitrary web script or HTML via the graph_start parameter to graph.php. NOTE: this vulnerability exists because of an incorrect fix for CVE-2...
Cacti Cacti 0.5
Cacti Cacti 0.8.6k
Cacti Cacti 0.8.6d
Cacti Cacti 0.6.3
Cacti Cacti
Cacti Cacti 0.8.7
Cacti Cacti 0.8.5a
Cacti Cacti 0.8.3
Cacti Cacti 0.6.8
Cacti Cacti 0.8.2
Cacti Cacti 0.8.5
Cacti Cacti 0.6.6
Cacti Cacti 0.8.7d
Cacti Cacti 0.8.7b
Cacti Cacti 0.8.7a
Cacti Cacti 0.6.2
Cacti Cacti 0.6.5
Cacti Cacti 0.8.6f
Cacti Cacti 0.8.6g
Cacti Cacti 0.8.6j
Cacti Cacti 0.8.7c
Cacti Cacti 0.6.1
1 EDB exploit
383
VMScore
CVE-2010-2545
Multiple cross-site scripting (XSS) vulnerabilities in Cacti prior to 0.8.7g, as used in Red Hat High Performance Computing (HPC) Solution and other products, allow remote malicious users to inject arbitrary web script or HTML via (1) the name element in an XML template to templa...
Cacti Cacti 0.5
Cacti Cacti 0.8.6k
Cacti Cacti 0.8.6d
Cacti Cacti 0.6.3
Cacti Cacti
Cacti Cacti 0.8.7
Cacti Cacti 0.8.5a
Cacti Cacti 0.8.3
Cacti Cacti 0.6.8
Cacti Cacti 0.8.2
Cacti Cacti 0.8.5
Cacti Cacti 0.6.6
Cacti Cacti 0.8.7d
Cacti Cacti 0.8.7b
Cacti Cacti 0.8.7a
Cacti Cacti 0.6.2
Cacti Cacti 0.6.5
Cacti Cacti 0.8.6f
Cacti Cacti 0.8.6g
Cacti Cacti 0.8.6j
Cacti Cacti 0.8.7c
Cacti Cacti 0.6.1
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
firewall
CVE-2024-35649
stored XSS
CVE-2022-28654
CVE-2020-35153
CVE-2024-27348
CVE-2022-28652
local users
CVE-2017-3506
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »