Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-2328

lib/graph_export.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote authenticated users to execute arbitrary commands via shell metacharacters in unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 77.3%
CVSS Severity
CVSS v2 Score 6.5
References
Products affected by CVE-2014-2328
  • Cacti » Cacti » Version: 0.8.7
    cpe:2.3:a:cacti:cacti:0.8.7
  • Cacti » Cacti » Version: 0.8.7a
    cpe:2.3:a:cacti:cacti:0.8.7a
  • Cacti » Cacti » Version: 0.8.7b
    cpe:2.3:a:cacti:cacti:0.8.7b
  • Cacti » Cacti » Version: 0.8.7c
    cpe:2.3:a:cacti:cacti:0.8.7c
  • Cacti » Cacti » Version: 0.8.7d
    cpe:2.3:a:cacti:cacti:0.8.7d
  • Cacti » Cacti » Version: 0.8.7e
    cpe:2.3:a:cacti:cacti:0.8.7e
  • Cacti » Cacti » Version: 0.8.7f
    cpe:2.3:a:cacti:cacti:0.8.7f
  • Cacti » Cacti » Version: 0.8.7g
    cpe:2.3:a:cacti:cacti:0.8.7g
  • Cacti » Cacti » Version: 0.8.8
    cpe:2.3:a:cacti:cacti:0.8.8
  • Cacti » Cacti » Version: 0.8.8a
    cpe:2.3:a:cacti:cacti:0.8.8a
  • Cacti » Cacti » Version: 0.8.8b
    cpe:2.3:a:cacti:cacti:0.8.8b
  • Debian » Debian Linux » Version: 7.0
    cpe:2.3:o:debian:debian_linux:7.0
  • Fedoraproject » Fedora » Version: 19
    cpe:2.3:o:fedoraproject:fedora:19
  • Fedoraproject » Fedora » Version: 20
    cpe:2.3:o:fedoraproject:fedora:20
  • Opensuse » Opensuse » Version: 13.1
    cpe:2.3:o:opensuse:opensuse:13.1
  • Opensuse » Opensuse » Version: 13.2
    cpe:2.3:o:opensuse:opensuse:13.2


Contact Us

Shodan ® - All rights reserved