UbuntuUpdates.org

Bugs fixes in "cacti"

Origin Bug number Title Date fixed
CVE CVE-2024-25641 Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, an arbitrary file write vulnerability, exploitable 2024-08-20
CVE CVE-2024-34340 Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, Cacti calls `compat_password_hash` when users set t 2024-08-20
CVE CVE-2024-31460 Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data stored in `automation_tree_rules.p 2024-08-20
CVE CVE-2024-31458 Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data stored in `form_save()` function i 2024-08-20
CVE CVE-2024-31445 Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, a SQL injection vulnerability in `automation_get_ne 2024-08-20
CVE CVE-2024-31444 Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data stored in `automation_tree_rules_f 2024-08-20
CVE CVE-2024-31443 Cacti provides an operational monitoring and fault management framework. Prior to 1.2.27, some of the data stored in `form_save()` function in `data_ 2024-08-20
CVE CVE-2024-29894 Cacti provides an operational monitoring and fault management framework. Versions of Cacti prior to 1.2.27 contain a residual cross-site scripting vu 2024-08-20
CVE CVE-2024-31459 Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, there is a file inclusion issue in the `lib/plugin. 2024-08-20
CVE CVE-2024-25641 Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, an arbitrary file write vulnerability, exploitable 2024-08-20
Debian 860271 cacti: polling at a higher frequency than cron doesn't work due to php 7 deprecation of split() - Debian Bug report logs 2017-04-18
Launchpad 1662027 cacti vs PHP 7 vs split 2017-04-18
CVE CVE-2016-3659 SQL injection vulnerability in graph_view.php in Cacti 0.8.8.g allows remote authenticated users to execute arbitrary SQL commands via the host_group 2017-02-15
CVE CVE-2016-3172 SQL injection vulnerability in tree.php in Cacti 0.8.8g and earlier allows remote authenticated users to execute arbitrary SQL commands via the paren 2017-02-15
CVE CVE-2016-2313 auth_login.php in Cacti before 0.8.8g allows remote authenticated users who use web authentication to bypass intended access restrictions by logging 2017-02-15
CVE CVE-2016-3659 SQL injection vulnerability in graph_view.php in Cacti 0.8.8.g allows remote authenticated users to execute arbitrary SQL commands via the host_group 2017-02-15
CVE CVE-2016-3172 SQL injection vulnerability in tree.php in Cacti 0.8.8g and earlier allows remote authenticated users to execute arbitrary SQL commands via the paren 2017-02-15
CVE CVE-2016-2313 auth_login.php in Cacti before 0.8.8g allows remote authenticated users who use web authentication to bypass intended access restrictions by logging 2017-02-15
Launchpad 1588813 cacti still not compatible with MySQL 5.7 default sql_mode 2016-06-20
Launchpad 1588813 cacti still not compatible with MySQL 5.7 default sql_mode 2016-06-09



About   -   Send Feedback to @ubuntu_updates