First published: Wed Jun 25 2014(Updated: )
SQL injection vulnerability in superlinks.php in the superlinks plugin 1.4-2 for Cacti allows remote attackers to execute arbitrary SQL commands via the id parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cacti Superlinks | =1.4-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-4644 is considered to have a high severity due to its ability to allow remote attackers to execute arbitrary SQL commands.
To fix CVE-2014-4644, you should update to the latest version of the superlinks plugin that addresses this vulnerability.
CVE-2014-4644 affects the superlinks plugin version 1.4-2 for Cacti.
CVE-2014-4644 is an SQL injection vulnerability that can be exploited by remote attackers.
You can identify if your system is vulnerable to CVE-2014-4644 by checking if you are running the superlinks plugin version 1.4-2 for Cacti.