cacti -- Multiple security vulnerabilities have been discovered (fwd)

Gadi Evron ge at linuxbox.org
Thu Feb 14 02:41:58 UTC 2008


I'm an MRTG guy, but many aren't.


---------- Forwarded message ----------
Date: Tue, 12 Feb 2008 14:42:01 -0200
From: Mario Sergio Candian <mscandian at freebsdbrasil.com.br>
To: bugtraq at securityfocus.com
Subject: cacti -- Multiple security vulnerabilities have been discovered

Affected packages:
cacti < 0.8.7b


Multiple security vulnerabilities have been discovered in Cacti's web 
interface:

    * XSS vulnerabilities
    * Path disclosure vulnerabilities
    * SQL injection vulnerabilities
    * HTTP response splitting vulnerabilities

References:
http://forums.cacti.net/about25749.html

-- 
Mario Sergio Candian
-
Live your dreams and face your fears



More information about the NANOG mailing list