CVE-2014-5261
EPSS 1.3%Published: 8/22/2014Modified: 5/27/2026
Also known as:DEBIAN-CVE-2014-5261
Description
The graph settings script (graph_settings.php) in Cacti 0.8.8b and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a font size, related to the rrdtool commandline in lib/rrd.php.
Affected packages (1)
- Debian/cactifrom 0, < 0.8.8b+dfsg-8