CVE-2013-1435
published 2013-08-23CVE-2013-1435: (1) snmp.php and (2) rrd.php in Cacti before 0.8.8b allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified vectors.
PriorityP351high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
2.39%
82.2th percentile
(1) snmp.php and (2) rrd.php in Cacti before 0.8.8b allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified vectors.
Affected
38 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
| cacti | cacti | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8ppp-2c7q-mxgh: (1) snmp
ghsa_unreviewed·2022-05-17
CVE-2013-1435 [HIGH] CWE-94 GHSA-8ppp-2c7q-mxgh: (1) snmp
(1) snmp.php and (2) rrd.php in Cacti before 0.8.8b allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified vectors.
OSV
CVE-2013-1435: (1) snmp
osv·2013-08-23·CVSS 7.5
CVE-2013-1435 [HIGH] CVE-2013-1435: (1) snmp
(1) snmp.php and (2) rrd.php in Cacti before 0.8.8b allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified vectors.
Debian
CVE-2013-1435: cacti - (1) snmp.php and (2) rrd.php in Cacti before 0.8.8b allows remote attackers to e...
vendor_debian·2013·CVSS 7.5
CVE-2013-1435 [HIGH] CVE-2013-1435: cacti - (1) snmp.php and (2) rrd.php in Cacti before 0.8.8b allows remote attackers to e...
(1) snmp.php and (2) rrd.php in Cacti before 0.8.8b allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified vectors.
Scope: local
bookworm: resolved (fixed in 0.8.8b+dfsg-1)
bullseye: resolved (fixed in 0.8.8b+dfsg-1)
forky: resolved (fixed in 0.8.8b+dfsg-1)
sid: resolved (fixed in 0.8.8b+dfsg-1)
trixie: resolved (fixed in 0.8.8b+dfsg-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-1434 CVE-2013-1435 cacti: SQL injection and shell escaping issues fixed in 0.8.8b [fedora-all]
bugzilla·2013-08-07·CVSS 7.5
CVE-2013-1434 [HIGH] CVE-2013-1434 CVE-2013-1435 cacti: SQL injection and shell escaping issues fixed in 0.8.8b [fedora-all]
CVE-2013-1434 CVE-2013-1435 cacti: SQL injection and shell escaping issues fixed in 0.8.8b [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
P
Bugzilla
CVE-2013-1434 CVE-2013-1435 cacti: SQL injection and shell escaping issues fixed in 0.8.8b
bugzilla·2013-08-07·CVSS 7.5
CVE-2013-1434 [HIGH] CVE-2013-1434 CVE-2013-1435 cacti: SQL injection and shell escaping issues fixed in 0.8.8b
CVE-2013-1434 CVE-2013-1435 cacti: SQL injection and shell escaping issues fixed in 0.8.8b
Cacti 0.8.8b was released [1] which includes a security fix for "SQL injection and shell escaping issues". Current Fedora and EPEL include 0.8.8a which is vulnerable to these flaws. No other information is currently available, however the 0.8.8b release is primarily a bug fix so should be safe to rebase across the board.
[1] http://sourceforge.net/mailarchive/message.php?msg_id=31258868
Discussion:
Created cacti tracking bugs for this issue:
Affects: fedora-all [bug 994617]
Affects: epel-all [bug 994618]
---
Code commits look to be as follows:
* SQL injection: http://svn.cacti.net/viewvc?view=rev&revision=7394
* Shell escape in snmp.php: http://svn.cacti.net/viewvc?view=rev&revision=7392
* S
Bugzilla
CVE-2013-1434 CVE-2013-1435 cacti: SQL injection and shell escaping issues fixed in 0.8.8b [epel-all]
bugzilla·2013-08-07·CVSS 7.5
CVE-2013-1434 [HIGH] CVE-2013-1434 CVE-2013-1435 cacti: SQL injection and shell escaping issues fixed in 0.8.8b [epel-all]
CVE-2013-1434 CVE-2013-1435 cacti: SQL injection and shell escaping issues fixed in 0.8.8b [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Bugzilla
CVE-2013-1436 XMonad.Hooks.DynamicLog remote command injection flaw
bugzilla·2013-07-29·CVSS 7.5
CVE-2013-1436 [HIGH] CVE-2013-1436 XMonad.Hooks.DynamicLog remote command injection flaw
CVE-2013-1436 XMonad.Hooks.DynamicLog remote command injection flaw
It was reported [1] that XMonad's contributed DynamicLog module was vulnerable to a remote command injection flaw. From the report:
Background
DynamicLog module feeds information to others programs about what's
happening on xmonad window manager. Such programs generally are status bars
as xmobar or dzen2. These programs features the ability of receiving
formatted input from stdin, and that's the way used by xmonad to
communicate information such as workspace status, current layout and window
title. So far, so good.
Both bars uses some meta-language to format their input. For example,
xmobar will make the following text clickable.
Click to clock
Vulnerability & exploit
As we know, web browsers usually set the window ti
http://forums.cacti.net/viewtopic.php?f=21&t=50593http://lists.opensuse.org/opensuse-updates/2013-08/msg00053.htmlhttp://secunia.com/advisories/54181http://secunia.com/advisories/54386http://svn.cacti.net/viewvc?view=rev&revision=7392http://svn.cacti.net/viewvc?view=rev&revision=7393http://www.debian.org/security/2012/dsa-2739http://www.openwall.com/lists/oss-security/2013/08/07/15http://forums.cacti.net/viewtopic.php?f=21&t=50593http://lists.opensuse.org/opensuse-updates/2013-08/msg00053.htmlhttp://secunia.com/advisories/54181http://secunia.com/advisories/54386http://svn.cacti.net/viewvc?view=rev&revision=7392http://svn.cacti.net/viewvc?view=rev&revision=7393http://www.debian.org/security/2012/dsa-2739http://www.openwall.com/lists/oss-security/2013/08/07/15
2013-08-23
Published