The graph settings script (graph_settings.php) in Cacti 0.8.8b and previous versions allows remote malicious users to execute arbitrary commands via shell metacharacters in a font size, related to the rrdtool commandline in lib/rrd.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cacti cacti 0.8.7f |
||
cacti cacti 0.8.7e |
||
cacti cacti 0.8.7i |
||
cacti cacti 0.8.7g |
||
cacti cacti 0.8.7 |
||
cacti cacti 0.8.6e |
||
cacti cacti |
||
cacti cacti 0.8.7d |
||
cacti cacti 0.8.7c |
||
cacti cacti 0.8.8a |
||
cacti cacti 0.8.8 |
||
cacti cacti 0.8.7b |
||
cacti cacti 0.8.7a |