Unrated severityNVD Advisory· Published Apr 23, 2014· Updated May 6, 2026
CVE-2014-2709
CVE-2014-2709
Description
lib/rrd.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified parameters.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:cacti:cacti:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:cacti:cacti:*:*:*:*:*:*:*:*range: >=0.8.7,<=0.8.7g
- (no CPE)range: <=0.8.8b
cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- svn.cacti.net/viewvcnvdPatchVendor Advisory
- lists.fedoraproject.org/pipermail/package-announce/2014-April/131821.htmlnvdMailing ListThird Party Advisory
- lists.fedoraproject.org/pipermail/package-announce/2014-April/131842.htmlnvdMailing ListThird Party Advisory
- seclists.org/oss-sec/2014/q2/15nvdMailing ListThird Party Advisory
- secunia.com/advisories/57647nvdThird Party Advisory
- secunia.com/advisories/59203nvdThird Party Advisory
- www.debian.org/security/2014/dsa-2970nvdThird Party Advisory
- www.securityfocus.com/bid/66630nvdThird Party AdvisoryVDB Entry
- bugs.debian.org/cgi-bin/bugreport.cginvdThird Party Advisory
- security.gentoo.org/glsa/201509-03nvdThird Party Advisory
News mentions
0No linked articles in our index yet.