Oval Definition:oval:org.opensuse.security:def:20142327
Revision Date:2022-06-30Version:1
Title:CVE-2014-2327
Description:

Cross-site request forgery (CSRF) vulnerability in Cacti 0.8.7g, 0.8.8b, and earlier allows remote attackers to hijack the authentication of users for unspecified commands, as demonstrated by requests that (1) modify binary files, (2) modify configurations, or (3) add arbitrary users.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2014-2327
Mitre CVE-2014-2327
SUSE CVE-2014-2327
openSUSE-SU-2015:0479-1
openSUSE-SU-2015:0479-1
Platform(s):openSUSE 13.1
openSUSE 13.2
openSUSE Tumbleweed
SUSE Linux Enterprise High Performance Computing 12
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server for SAP Applications 12
SUSE Linux Enterprise Server for SAP Applications 12 SP3
SUSE Linux Enterprise Server for SAP Applications 12 SP4
SUSE Linux Enterprise Server for SAP Applications 12 SP5
SUSE Package Hub for SUSE Linux Enterprise 12
Product(s):
Definition Synopsis
  • openSUSE 13.1 is installed
  • AND cacti-0.8.8c-8.1 is installed
  • Definition Synopsis
  • openSUSE 13.2 is installed
  • AND cacti-0.8.8c-4.4.1 is installed
  • Definition Synopsis
  • SUSE Package Hub for SUSE Linux Enterprise 12 is installed
  • AND Package Information
  • cacti-1.1.38-2 is installed
  • OR cacti-doc-1.1.38-2 is installed
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • cacti-0.8.8h-1.2 is installed
  • OR cacti-doc-0.8.8h-1.2 is installed
  • Definition Synopsis
  • SUSE Package Hub for SUSE Linux Enterprise 12 is installed
  • AND Package Information
  • cacti-1.1.38-2.1 is installed
  • OR cacti-doc-1.1.38-2.1 is installed
  • BACK