graph.php security fixed
Moderators: Developers, Moderators
-
- Posts: 4
- Joined: Tue Jan 21, 2003 5:42 pm
graph.php security fixed
I noticed that when you access CACTI with http://x.x.x.x/cacti/graph.php?rraid=al ... id=some_id where som_id is a valid ID from rrd_graph table, then you can see the graph itself without any authorisation. I removed guest user but it didn't help. So, you can walk all numbers from 1 to infinity and actualy see all graphs in the system.
-
- Posts: 4
- Joined: Tue Jan 21, 2003 5:42 pm
Who is online
Users browsing this forum: No registered users and 0 guests