Oval Definition:oval:org.opensuse.security:def:20145026
Revision Date:2022-06-30Version:1
Title:CVE-2014-5026
Description:

Multiple cross-site scripting (XSS) vulnerabilities in Cacti 0.8.8b allow remote authenticated users with console access to inject arbitrary web script or HTML via a (1) Graph Tree Title in a delete or (2) edit action; (3) CDEF Name, (4) Data Input Method Name, or (5) Host Templates Name in a delete action; (6) Data Source Title; (7) Graph Title; or (8) Graph Template Name in a delete or (9) duplicate action.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2014-5026
Mitre CVE-2014-5026
SUSE CVE-2014-5026
openSUSE-SU-2015:0479-1
openSUSE-SU-2015:0479-1
Platform(s):openSUSE 13.1
openSUSE 13.2
openSUSE Tumbleweed
SUSE Linux Enterprise High Performance Computing 12
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server for SAP Applications 12
SUSE Linux Enterprise Server for SAP Applications 12 SP3
SUSE Linux Enterprise Server for SAP Applications 12 SP4
SUSE Linux Enterprise Server for SAP Applications 12 SP5
SUSE Package Hub for SUSE Linux Enterprise 12
Product(s):
Definition Synopsis
  • openSUSE 13.1 is installed
  • AND cacti-0.8.8c-8.1 is installed
  • Definition Synopsis
  • openSUSE 13.2 is installed
  • AND cacti-0.8.8c-4.4.1 is installed
  • Definition Synopsis
  • SUSE Package Hub for SUSE Linux Enterprise 12 is installed
  • AND Package Information
  • cacti-1.1.38-2 is installed
  • OR cacti-doc-1.1.38-2 is installed
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • cacti-0.8.8h-1.2 is installed
  • OR cacti-doc-0.8.8h-1.2 is installed
  • Definition Synopsis
  • SUSE Package Hub for SUSE Linux Enterprise 12 is installed
  • AND Package Information
  • cacti-1.1.38-2.1 is installed
  • OR cacti-doc-1.1.38-2.1 is installed
  • BACK