CVE-2007-3112: High severity The Cacti Group Cacti vulnerability
graphimage.php in Cacti 0.8.6i, and possibly other versions, allows remote authenticated users to cause a denial of service (CPU consumption) via a large value of the (1) graphstart or (2) graphend parameter, different vectors than CVE-2007-3113.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-3112?
CVE-2007-3112 has a moderate severity rating due to its potential to cause denial of service via resource exhaustion.
How do I fix CVE-2007-3112?
To fix CVE-2007-3112, upgrade Cacti to a version later than 0.8.6i that addresses this vulnerability.
Who is affected by CVE-2007-3112?
CVE-2007-3112 affects versions of Cacti up to and including 0.8.6i as known vulnerable software.
What type of attack does CVE-2007-3112 involve?
CVE-2007-3112 involves a denial of service attack that can be triggered by remote authenticated users.
What parameters are involved in CVE-2007-3112?
CVE-2007-3112 is triggered by manipulating the graph_start or graph_end parameters to consume excessive CPU resources.