functional security
Showing 1 - 1 of 1 RSS Feed

Files

Mandriva Linux Security Advisory 2010-117
Posted Jun 17, 2010
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2010-117 - SQL injection vulnerability in graph.php in Cacti 0.8.7e and earlier allows remote attackers to execute arbitrary SQL commands via the rra_id parameter in a GET request in conjunction with a valid rra_id value in a POST request or a cookie, which bypasses the validation routine. The updated packages have been patched to correct this issue.

tags | advisory, remote, arbitrary, php, sql injection
systems | linux, mandriva
advisories | CVE-2010-2092
MD5 | 708e5a9d42d2e9b098b43a095e2696d6
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

packet storm

© 2012 Packet Storm. All rights reserved.

close