Vulnerability Bulletins

DSA-3423 cacti - security update

   
Affected software Debian
 
Several SQL injection vulnerabilities have been discovered in Cacti, anRRDTool frontend written in PHP. Specially crafted input can be used byan attacker in the rra_id value of the graph.php script to executearbitrary SQL commands on the database.

More info:

https://www.debian.org/security/2015/dsa-3423