Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2005-2149

Опубликовано: 06 июл. 2005
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 10

Описание

config.php in Cacti 0.8.6e and earlier allows remote attackers to set the no_http_headers switch, then modify session information to gain privileges and disable the use of addslashes to conduct SQL injection attacks.

РелизСтатусПримечание
dapper

released

0.8.6h-1ubuntu3.1
devel

released

0.8.6i-3
edgy

released

0.8.6h-3ubuntu0.1
feisty

released

0.8.6i-3
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 79%
0.01293
Низкий

10 Critical

CVSS2

Связанные уязвимости

nvd
около 20 лет назад

config.php in Cacti 0.8.6e and earlier allows remote attackers to set the no_http_headers switch, then modify session information to gain privileges and disable the use of addslashes to conduct SQL injection attacks.

debian
около 20 лет назад

config.php in Cacti 0.8.6e and earlier allows remote attackers to set ...

github
больше 3 лет назад

config.php in Cacti 0.8.6e and earlier allows remote attackers to set the no_http_headers switch, then modify session information to gain privileges and disable the use of addslashes to conduct SQL injection attacks.

EPSS

Процентиль: 79%
0.01293
Низкий

10 Critical

CVSS2