Show filters
25 Total Results
Displaying 21-25 of 25
Sort by:
Attacker Value
Unknown
CVE-2005-1524
Disclosure Date: June 22, 2005 (last updated February 22, 2025)
PHP file inclusion vulnerability in top_graph_header.php in Cacti 0.8.6d and possibly earlier versions allows remote attackers to execute arbitrary PHP code via the config[library_path] parameter.
0
Attacker Value
Unknown
CVE-2005-1526
Disclosure Date: June 22, 2005 (last updated February 22, 2025)
PHP remote file inclusion vulnerability in config_settings.php in Cacti before 0.8.6e allows remote attackers to execute arbitrary PHP code via the config[include_path] parameter.
0
Attacker Value
Unknown
CVE-2005-1525
Disclosure Date: June 22, 2005 (last updated February 22, 2025)
SQL injection vulnerability in config_settings.php for Cacti before 0.8.6e allows remote attackers to execute arbitrary SQL commands via the id parameter.
0
Attacker Value
Unknown
CVE-2004-1736
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Cacti 0.8.5a allows remote attackers to gain sensitive information via an HTTP request to (1) auth.php, (2) auth_login.php, (3) auth_changepassword.php, and possibly other php files, which reveal the installation path in a PHP error message.
0
Attacker Value
Unknown
CVE-2004-1737
Disclosure Date: August 16, 2004 (last updated February 22, 2025)
SQL injection vulnerability in auth_login.php in Cacti 0.8.5a allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password parameters.
0