CVE-2009-4112
EPSS 8.0%
Description
Cacti 0.8.7e and earlier allows remote authenticated administrators to gain privileges by modifying the "Data Input Method" for the "Linux - Get Memory Usage" setting to contain arbitrary commands.
How to fix CVE-2009-4112
To remediate CVE-2009-4112, upgrade the affected package to a fixed version below.
- Debian/cacti—upgrade to 1.2.1+ds1-1 or later
Is CVE-2009-4112 being exploited?
Moderate — EPSS is 8.0%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 1.2.1+ds1-1