CVE-2005-1524: Medium severity The Cacti Group Cacti vulnerability
Published Jun 22, 2005
·Updated
PHP file inclusion vulnerability in topgraphheader.php in Cacti 0.8.6d and possibly earlier versions allows remote attackers to execute arbitrary PHP code via the config[librarypath] parameter.
Affected Software
20 affected components
The Cacti Group Cacti<=0.8.6d
The Cacti Group Cacti=0.5
The Cacti Group Cacti=0.6
The Cacti Group Cacti=0.6.1
The Cacti Group Cacti=0.6.2
The Cacti Group Cacti=0.6.3
The Cacti Group Cacti=0.6.4
The Cacti Group Cacti=0.6.5
The Cacti Group Cacti=0.6.6
The Cacti Group Cacti=0.6.7
The Cacti Group Cacti=0.6.8
The Cacti Group Cacti=0.6.8a
The Cacti Group Cacti=0.8
The Cacti Group Cacti=0.8.1
The Cacti Group Cacti=0.8.2
The Cacti Group Cacti=0.8.2a
The Cacti Group Cacti=0.8.3
The Cacti Group Cacti=0.8.3a
The Cacti Group Cacti=0.8.4
The Cacti Group Cacti=0.8.5a
Remediation
Patch Available
Patch Available
Event History
Jun 22, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1524?
CVE-2005-1524 is considered a high severity vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2005-1524?
To fix CVE-2005-1524, upgrade Cacti to version 0.8.6e or later.
3
Which versions of Cacti are affected by CVE-2005-1524?
CVE-2005-1524 affects Cacti versions up to and including 0.8.6d, as well as earlier versions.
4
What type of vulnerability is CVE-2005-1524?
CVE-2005-1524 is a PHP file inclusion vulnerability.
5
Can CVE-2005-1524 be exploited remotely?
Yes, CVE-2005-1524 can be exploited remotely by attackers to execute arbitrary PHP code.