068065e6ac
CVE-2014-2327, missing CSRF token, is not yet resolved. It is still tracked at RHBZ #1082122. Tony Roman <troman@cacti.net> wrote at https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=742768: "As for CVE-2014-2327 Cross Site Request Forgery Vulnerability, I'm still working on a solution. I have some limited time this weekend to work on this fix. But I will be on the west coast for business this next week and will have time at night to work on this fix." |
||
---|---|---|
.gitignore | ||
cacti-0.8.8a-legal.patch | ||
cacti-0.8.8a-replace_treeview_by_jquery.jstree.patch | ||
cacti-0.8.8b-html-injection.patch | ||
cacti-0.8.8b-remote-command-execution.patch | ||
cacti-0.8.8b-rra-comments.patch | ||
cacti-0.8.8b-sanitize-variables.patch | ||
cacti-0.8.8b-sql-injection-shell-escaping.patch | ||
cacti-httpd.conf | ||
cacti.cron | ||
cacti.logrotate | ||
cacti.README.fedora | ||
cacti.spec | ||
d.gif | ||
d.png | ||
sources | ||
throbber.gif |