[102427] in North American Network Operators' Group
cacti -- Multiple security vulnerabilities have been discovered
daemon@ATHENA.MIT.EDU (Gadi Evron)
Wed Feb 13 21:42:42 2008
Date: Wed, 13 Feb 2008 20:41:58 -0600 (CST)
From: Gadi Evron <ge@linuxbox.org>
To: nanog@merit.edu
Errors-To: owner-nanog@merit.edu
I'm an MRTG guy, but many aren't.
---------- Forwarded message ----------
Date: Tue, 12 Feb 2008 14:42:01 -0200
From: Mario Sergio Candian <mscandian@freebsdbrasil.com.br>
To: bugtraq@securityfocus.com
Subject: cacti -- Multiple security vulnerabilities have been discovered
Affected packages:
cacti < 0.8.7b
Multiple security vulnerabilities have been discovered in Cacti's web
interface:
* XSS vulnerabilities
* Path disclosure vulnerabilities
* SQL injection vulnerabilities
* HTTP response splitting vulnerabilities
References:
http://forums.cacti.net/about25749.html
--
Mario Sergio Candian
-
Live your dreams and face your fears