Unrated severityNVD Advisory· Published Jun 17, 2015· Updated May 6, 2026
CVE-2015-4342
CVE-2015-4342
Description
SQL injection vulnerability in Cacti before 0.8.8d allows remote attackers to execute arbitrary SQL commands via unspecified vectors involving a cdef id.
Affected products
4cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:23:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:24:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
13- www.cacti.net/release_notes_0_8_8d.phpnvdPatchVendor Advisory
- bugs.cacti.net/view.phpnvd
- lists.fedoraproject.org/pipermail/package-announce/2016-May/183449.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2016-May/183454.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2016-May/183919.htmlnvd
- lists.opensuse.org/opensuse-updates/2015-06/msg00052.htmlnvd
- packetstormsecurity.com/files/132224/Cacti-SQL-Injection-Header-Injection.htmlnvd
- seclists.org/fulldisclosure/2015/Jun/19nvd
- www.debian.org/security/2015/dsa-3295nvd
- www.securityfocus.com/bid/75108nvd
- www.securitytracker.com/id/1032672nvd
- bugzilla.suse.com/show_bug.cginvd
- www.suse.com/security/cve/CVE-2015-4342.htmlnvd
News mentions
0No linked articles in our index yet.