- Patch for CVE-2014-2708 SQL injection issues in graph_xport.php (RHBZ #1084258) - Patch for CVE-2014-2709 shell escaping issues in lib/rrd.php (RHBZ #1084258) - Patch for CVE-2014-2326 stored XSS attack (RHBZ #1082122) - Patch for CVE-2014-2327 missing CSRF token (RHBZ #1082122) - Patch for CVE-2014-2328 use of exec-like function calls without safety checks allow arbitrary command execution (RHBZ #1082122) |
||
---|---|---|
.gitignore | ||
cacti-0.8.8a-legal.patch | ||
cacti-0.8.8a-replace_treeview_by_jquery.jstree.patch | ||
cacti-0.8.8b-html-injection.patch | ||
cacti-0.8.8b-remote-command-execution.patch | ||
cacti-0.8.8b-rra-comments.patch | ||
cacti-0.8.8b-sanitize-variables.patch | ||
cacti-0.8.8b-sql-injection-shell-escaping.patch | ||
cacti-httpd.conf | ||
cacti.cron | ||
cacti.logrotate | ||
cacti.README.fedora | ||
cacti.spec | ||
d.gif | ||
d.png | ||
sources | ||
throbber.gif |