Unrated severityNVD Advisory· Published Jun 22, 2005· Updated Apr 16, 2026
CVE-2005-1524
CVE-2005-1524
Description
PHP file inclusion vulnerability in top_graph_header.php in Cacti 0.8.6d and possibly earlier versions allows remote attackers to execute arbitrary PHP code via the config[library_path] parameter.
Affected products
20cpe:2.3:a:the_cacti_group:cacti:*:*:*:*:*:*:*:*+ 19 more
- cpe:2.3:a:the_cacti_group:cacti:*:*:*:*:*:*:*:*range: <=0.8.6d
- cpe:2.3:a:the_cacti_group:cacti:0.5:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.1:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.2:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.3:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.4:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.5:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.6:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.7:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.8:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.8a:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.1:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.2:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.2a:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.3:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.3a:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.4:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.5a:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- www.cacti.net/release_notes_0_8_6e.phpnvdPatchVendor Advisory
- www.gentoo.org/security/en/glsa/glsa-200506-20.xmlnvdPatchVendor Advisory
- www.idefense.com/application/poi/displaynvdPatchVendor Advisory
- distro.conectiva.com/atualizacoes/index.phpnvd
- secunia.com/advisories/15490nvd
- secunia.com/advisories/15931nvd
- secunia.com/advisories/16136nvd
- securitytracker.com/idnvd
- www.debian.org/security/2005/dsa-764nvd
- www.osvdb.org/17426nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/21118nvd
News mentions
0No linked articles in our index yet.