[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253164

 
 

909

 
 

197077

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MDVSA-2013:228 -- Mandriva cacti

ID: oval:org.secpod.oval:def:1300225Date: (C)2013-11-01   (M)2022-10-10
Class: PATCHFamily: unix




Multiple vulnerabilities has been discovered and corrected in cacti: Multiple cross-site scripting vulnerabilities in Cacti 0.8.8b and earlier allow remote attackers to inject arbitrary web script or HTML via the step parameter to install/index.php or the id parameter to cacti/host.php . SQL injection vulnerability in cacti/host.php in Cacti 0.8.8b and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter . The updated packages have been patched to correct these issues.

Platform:
Mandriva Enterprise Server 5.2
Product:
cacti
Reference:
MDVSA-2013:228
CVE-2013-5588
CVE-2013-5589
CVE    2
CVE-2013-5588
CVE-2013-5589
CPE    1
cpe:/o:mandriva:enterprise_server:5.2

© SecPod Technologies