All the user graphs are listed to everyone

Post general support questions here that do not specifically fall into the Linux or Windows categories.

Moderators: Developers, Moderators

Post Reply
dmo
Posts: 4
Joined: Thu Feb 15, 2007 2:33 pm

All the user graphs are listed to everyone

Post by dmo »

Hello to everyone,

I detected a breach in my cacti 0.8.6i. Once I logout with a regular user from cacti I push back button on my browser and a list of all the clients are fully shown. So every customer is able to view the rest of clients graphs.

Putting directly http://serverdomain/graph_view.php on my browser I'm also able to list all users without any other action (as trying to log in first) and enter each one.

Is there anything to do with my version of cacti? I was wondering if there is a way around to get rid of this.

Thanks for your help.

Dmo
User avatar
Linegod
Developer
Posts: 1626
Joined: Thu Feb 20, 2003 10:16 am
Location: Canada
Contact:

Post by Linegod »

Go to 'Utilities/User Management', click on 'guest' and uncheck 'View Graphs' and save.
--
Live fast, die young
You're sucking up my bandwidth.

J.P. Pasnak,CD
CCNA, LPIC-1
http://www.warpedsystems.sk.ca
dmo
Posts: 4
Joined: Thu Feb 15, 2007 2:33 pm

Post by dmo »

Hi Linegod,

Thanks a lot, it worked for me ...


Regards,

David
Post Reply

Who is online

Users browsing this forum: No registered users and 1 guest