Unrated severityNVD Advisory· Published Apr 22, 2003· Updated Apr 16, 2026
CVE-2002-1477
CVE-2002-1477
Description
graphs.php in Cacti before 0.6.8 allows remote authenticated Cacti administrators to execute arbitrary commands via shell metacharacters in the title during edit mode.
Affected products
10cpe:2.3:a:the_cacti_group:cacti:0.5:*:*:*:*:*:*:*+ 9 more
- cpe:2.3:a:the_cacti_group:cacti:0.5:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.1:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.2:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.3:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.4:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.5:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.6:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.7:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.8:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- www.debian.org/security/2002/dsa-164nvdPatchVendor Advisory
- www.iss.net/security_center/static/10048.phpnvdPatchVendor Advisory
- archives.neohapsis.com/archives/bugtraq/2002-09/0028.htmlnvdExploitPatchVendor Advisory
- www.knights-of-the-routing-table.org/advisories/krt_001_20020903_cacti.txtnvdURL Repurposed
- www.securityfocus.com/bid/5627nvd
News mentions
0No linked articles in our index yet.