CVE-2005-1526: High severity The Cacti Group Cacti vulnerability
Published Jun 22, 2005
·Updated
PHP remote file inclusion vulnerability in configsettings.php in Cacti before 0.8.6e allows remote attackers to execute arbitrary PHP code via the config[includepath] parameter.
Affected Software
20 affected components
The Cacti Group Cacti<=0.8.6d
The Cacti Group Cacti=0.5
The Cacti Group Cacti=0.6
The Cacti Group Cacti=0.6.1
The Cacti Group Cacti=0.6.2
The Cacti Group Cacti=0.6.3
The Cacti Group Cacti=0.6.4
The Cacti Group Cacti=0.6.5
The Cacti Group Cacti=0.6.6
The Cacti Group Cacti=0.6.7
The Cacti Group Cacti=0.6.8
The Cacti Group Cacti=0.6.8a
The Cacti Group Cacti=0.8
The Cacti Group Cacti=0.8.1
The Cacti Group Cacti=0.8.2
The Cacti Group Cacti=0.8.2a
The Cacti Group Cacti=0.8.3
The Cacti Group Cacti=0.8.3a
The Cacti Group Cacti=0.8.4
The Cacti Group Cacti=0.8.5a
Remediation
Patch Available
Patch Available
Event History
Jun 22, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1526?
CVE-2005-1526 is considered a high severity vulnerability that allows remote attackers to execute arbitrary PHP code.
2
How do I fix CVE-2005-1526?
To fix CVE-2005-1526, upgrade Cacti to version 0.8.6e or later, which addresses this vulnerability.
3
What versions of Cacti are affected by CVE-2005-1526?
CVE-2005-1526 affects Cacti versions prior to 0.8.6e, including multiple earlier versions such as 0.8.5a and 0.6.x.
4
What is the impact of CVE-2005-1526?
The impact of CVE-2005-1526 is the potential for remote code execution, which could compromise the affected system.
5
Is CVE-2005-1526 still a risk today?
Yes, CVE-2005-1526 can still pose a risk if systems running vulnerable versions of Cacti are not updated.