Search:     Advanced search
server monitoring

Cacti < 0.8.6f Multiple Vulnerabilities (Priv Esc, Cmd Exe)

Article ID: 18619
Last updated: 27 Jan, 2009
Views: 490
Posted: 22 Jan, 2009
by: Tech Pubs S.
Updated: 27 Jan, 2009
by: Tech Pubs S.

Cacti < 0.8.6f Multiple Vulnerabilities (Priv Esc, Cmd Exe)

This script is Copyright (C) 2005-2008 Tenable Network Security, Inc.

FamilyCGI abuses
Plugin ID18619
Bugtraq ID14128
14129
14130
CVE IDCVE-2005-2148
CVE-2005-2149

Description:
Synopsis :

The remote web server contains a PHP application that is affected by
multiple vulnerabilities.

Description :

The remote host is running Cacti, a web-based frontend to RRDTool for
network graphing.

The version of Cacti on the remote host suffers from several
vulnerabilities that may allow an attacker to bypass authentication
and gain administrative access to the affected application (if PHPs
register_globals setting is enabled), execute arbitrary commands
remotely, and conduct SQL injection attacks.

See also :

http://www.hardened-php.net/advisory-032005.php
http://www.hardened-php.net/advisory-042005.php
http://www.hardened-php.net/advisory-052005.php
http://www.cacti.net/release_notes_0_8_6f.php

Solution :

Upgrade to Cacti 0.8.6f or later.

Risk factor :

High / CVSS Base Score : 7.5
(CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P)
This article was:   Helpful | Not Helpful
Prev   Next
Infinite Mobile Delivery Webmail Multiple Vulnerabilities (XSS,...     GForge Multiple Script Traversal Arbitrary Directory Listing