Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39246
HistoryFeb 13, 2023 - 3:47 p.m.

OS Command Injection

2023-02-1315:47:50
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15
cacti
buster
os command injection
graph_realtime.php
remote attackers
arbitrary commands
shell metacharacters
cookie

0.921 High

EPSS

Percentile

99.0%

cacti:buster is vulnerable to OS Command Injection. The vulnerability exists in graph_realtime.php which allows remote attackers to execute arbitrary commands through shell metacharacters in a cookie.

References