Unrated severityNVD Advisory· Published Jun 22, 2005· Updated Apr 16, 2026
CVE-2005-1526
CVE-2005-1526
Description
PHP remote file inclusion vulnerability in config_settings.php in Cacti before 0.8.6e allows remote attackers to execute arbitrary PHP code via the config[include_path] parameter.
Affected products
20cpe:2.3:a:the_cacti_group:cacti:*:*:*:*:*:*:*:*+ 19 more
- cpe:2.3:a:the_cacti_group:cacti:*:*:*:*:*:*:*:*range: <=0.8.6d
- cpe:2.3:a:the_cacti_group:cacti:0.5:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.1:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.2:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.3:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.4:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.5:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.6:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.7:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.8:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.6.8a:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.1:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.2:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.2a:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.3:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.3a:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.4:*:*:*:*:*:*:*
- cpe:2.3:a:the_cacti_group:cacti:0.8.5a:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- www.cacti.net/release_notes_0_8_6e.phpnvdPatchVendor Advisory
- www.gentoo.org/security/en/glsa/glsa-200506-20.xmlnvdPatchVendor Advisory
- www.idefense.com/application/poi/displaynvdPatchVendor Advisory
- distro.conectiva.com/atualizacoes/index.phpnvd
- secunia.com/advisories/15490nvd
- secunia.com/advisories/15931nvd
- securitytracker.com/idnvd
- www.debian.org/security/2005/dsa-764nvd
- www.osvdb.org/17425nvd
- www.securityfocus.com/bid/14028nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/21119nvd
News mentions
0No linked articles in our index yet.