nanog mailing list archives

cacti -- Multiple security vulnerabilities have been discovered (fwd)


From: Gadi Evron <ge () linuxbox org>
Date: Wed, 13 Feb 2008 20:41:58 -0600 (CST)


I'm an MRTG guy, but many aren't.


---------- Forwarded message ----------
Date: Tue, 12 Feb 2008 14:42:01 -0200
From: Mario Sergio Candian <mscandian () freebsdbrasil com br>
To: bugtraq () securityfocus com
Subject: cacti -- Multiple security vulnerabilities have been discovered

Affected packages:
cacti < 0.8.7b


Multiple security vulnerabilities have been discovered in Cacti's web interface:

   * XSS vulnerabilities
   * Path disclosure vulnerabilities
   * SQL injection vulnerabilities
   * HTTP response splitting vulnerabilities

References:
http://forums.cacti.net/about25749.html

--
Mario Sergio Candian
-
Live your dreams and face your fears


Current thread: