CVE-2014-2328
published 2014-04-23CVE-2014-2328: lib/graph_export.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote authenticated users to execute arbitrary commands via shell metacharacters in…
PriorityP342medium6.5CVSS 2.0
AVNACLAuSCPIPAP
EPSS
3.54%
88.1th percentile
lib/graph_export.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote authenticated users to execute arbitrary commands via shell metacharacters in unspecified vectors.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cacti | cacti | >= 0 < 0.8.8b+dfsg-4 | 0.8.8b+dfsg-4 |
| cacti | cacti | >= 0 < 0.8.8b+dfsg-4 | 0.8.8b+dfsg-4 |
| cacti | cacti | >= 0 < 0.8.8b+dfsg-4 | 0.8.8b+dfsg-4 |
| cacti | cacti | >= 0 < 0.8.8b+dfsg-4 | 0.8.8b+dfsg-4 |
| cacti | cacti | 0.8.7 – 0.8.7g | — |
| cacti | cacti | 0.8.8 – 0.8.8b | — |
| debian | cacti | < cacti 0.8.8b+dfsg-4 (bookworm) | cacti 0.8.8b+dfsg-4 (bookworm) |
| debian | debian_linux | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
CVSS provenance
nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
osv6.5MEDIUM
vendor_debian6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-fwg6-8jf8-3wh3: lib/graph_export
ghsa_unreviewed·2022-05-14
CVE-2014-2328 [MEDIUM] GHSA-fwg6-8jf8-3wh3: lib/graph_export
lib/graph_export.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote authenticated users to execute arbitrary commands via shell metacharacters in unspecified vectors.
OSV
CVE-2014-2328: lib/graph_export
osv·2014-04-23·CVSS 6.5
CVE-2014-2328 [MEDIUM] CVE-2014-2328: lib/graph_export
lib/graph_export.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote authenticated users to execute arbitrary commands via shell metacharacters in unspecified vectors.
Debian
CVE-2014-2328: cacti - lib/graph_export.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote authenti...
vendor_debian·2014·CVSS 6.5
CVE-2014-2328 [MEDIUM] CVE-2014-2328: cacti - lib/graph_export.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote authenti...
lib/graph_export.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote authenticated users to execute arbitrary commands via shell metacharacters in unspecified vectors.
Scope: local
bookworm: resolved (fixed in 0.8.8b+dfsg-4)
bullseye: resolved (fixed in 0.8.8b+dfsg-4)
forky: resolved (fixed in 0.8.8b+dfsg-4)
sid: resolved (fixed in 0.8.8b+dfsg-4)
trixie: resolved (fixed in 0.8.8b+dfsg-4)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-2328 pcre: infinite recursion compiling pattern with recursive reference in a group with indefinite repeat (8.36/20)
bugzilla·2015-11-25·CVSS 7.5
CVE-2015-2328 [HIGH] CVE-2015-2328 pcre: infinite recursion compiling pattern with recursive reference in a group with indefinite repeat (8.36/20)
CVE-2015-2328 pcre: infinite recursion compiling pattern with recursive reference in a group with indefinite repeat (8.36/20)
A stack-based buffer overflow vulnerability was found in compile_regex(), triggered via crafted regular expression.
Upstream bug (contains reproducer):
https://bugs.exim.org/show_bug.cgi?id=1515
Upstream patch:
http://vcs.pcre.org/pcre?view=revision&revision=1498
CVE request:
http://www.openwall.com/lists/oss-security/2015/05/31/4
Discussion:
Created pcre tracking bugs for this issue:
Affects: fedora-all [bug 1285401]
---
Upstream fixed it in 8.36. Simple reproducer is crash when compiling /((?(R)a|(?1)))*/ expression.
---
This has already been fixed as bug #1128577 in Fedora. No supported Fedora is affected since 2014-08-11.
---
This is not a stack
Bugzilla
CVE-2014-2327 CVE-2014-2326 CVE-2014-2328 cacti: multiple flaws reported by Deutsche Telekom [fedora-all]
bugzilla·2014-04-01·CVSS 4.3
CVE-2014-2327 [MEDIUM] CVE-2014-2327 CVE-2014-2326 CVE-2014-2328 cacti: multiple flaws reported by Deutsche Telekom [fedora-all]
CVE-2014-2327 CVE-2014-2326 CVE-2014-2328 cacti: multiple flaws reported by Deutsche Telekom [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Bugzilla
CVE-2014-2327 CVE-2014-2326 CVE-2014-2328 cacti: multiple flaws reported by Deutsche Telekom [epel-all]
bugzilla·2014-04-01·CVSS 4.3
CVE-2014-2327 [MEDIUM] CVE-2014-2327 CVE-2014-2326 CVE-2014-2328 cacti: multiple flaws reported by Deutsche Telekom [epel-all]
CVE-2014-2327 CVE-2014-2326 CVE-2014-2328 cacti: multiple flaws reported by Deutsche Telekom [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when availabl
Bugzilla
CVE-2014-2326 CVE-2014-2327 CVE-2014-2328 cacti: multiple flaws reported by Deutsche Telekom
bugzilla·2014-03-28·CVSS 4.3
CVE-2014-2326 [MEDIUM] CVE-2014-2326 CVE-2014-2327 CVE-2014-2328 cacti: multiple flaws reported by Deutsche Telekom
CVE-2014-2326 CVE-2014-2327 CVE-2014-2328 cacti: multiple flaws reported by Deutsche Telekom
A posting to bugtraq from Deutsche Telekom [1] noted multiple flaws in Cacti 0.8.7g:
CVE-2014-2326: stored XSS
"The Cacti application is susceptible to stored XSS attacks. This is mainly the result of improper output encoding."
CVE-2014-2327: missing CSRF token
"The Cacti application does not implement any CSRF tokens. More about CSRF attacks, risks and mitigations see https://www.owasp.org/index.php/Cross-Site_Request_Forgery_(CSRF). This attack has a vast impact on the security of the Cacti application, as multiple configuration parameters can be changed using a CSRF attack. One very critical attack vector is the modification of several binary files in the Cacti configuration, which may then b
http://bugs.cacti.net/view.php?id=2433http://lists.fedoraproject.org/pipermail/package-announce/2014-April/131821.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2014-April/131842.htmlhttp://lists.opensuse.org/opensuse-updates/2015-03/msg00034.htmlhttp://secunia.com/advisories/59203http://svn.cacti.net/viewvc?view=rev&revision=7442http://www.debian.org/security/2014/dsa-2970http://www.securityfocus.com/archive/1/531588http://www.securityfocus.com/bid/66387https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=742768https://security.gentoo.org/glsa/201509-03http://bugs.cacti.net/view.php?id=2433http://lists.fedoraproject.org/pipermail/package-announce/2014-April/131821.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2014-April/131842.htmlhttp://lists.opensuse.org/opensuse-updates/2015-03/msg00034.htmlhttp://secunia.com/advisories/59203http://svn.cacti.net/viewvc?view=rev&revision=7442http://www.debian.org/security/2014/dsa-2970http://www.securityfocus.com/archive/1/531588http://www.securityfocus.com/bid/66387https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=742768https://security.gentoo.org/glsa/201509-03
2014-04-23
Published