oss-sec mailing list archives

Re: CVE Request - Cacti - 0.8.7e


From: "Steven M. Christey" <coley () linus mitre org>
Date: Mon, 30 Nov 2009 13:31:25 -0500 (EST)


On Thu, 26 Nov 2009 oss-security () moritz-naumann com wrote:

It's 4 XSS issues (one of them persistent) and 1 priviledge escalation
issue. An advisory is coming to a full disclosure mailing list near you
any minute.

Use CVE-2009-4112 for the privilege escalation issue.

The CVEs will be updated based on
http://archives.neohapsis.com/archives/fulldisclosure/2009-11/0292.html

- Steve


Current thread: