mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 02:31:38 +00:00
751 B
751 B
CVE-2015-8369
Description
SQL injection vulnerability in include/top_graph_header.php in Cacti 0.8.8f and earlier allows remote attackers to execute arbitrary SQL commands via the rra_id parameter in a properties action to graph.php.
POC
Reference
- http://packetstormsecurity.com/files/134724/Cacti-0.8.8f-SQL-Injection.html
- http://seclists.org/fulldisclosure/2015/Dec/8
Github
No PoCs found on GitHub currently.