PublicDate: 2008-02-14 23:00:00 UTC Candidate: CVE-2008-0784 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0784 Description: graph.php in Cacti 0.8.7 before 0.8.7b and 0.8.6 before 0.8.6k allows remote attackers to obtain the full path via an invalid local_graph_id parameter and other unspecified vectors. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_cacti: upstream_cacti: not-affected (0.8.7b, 0.8.6k) dapper_cacti: released (0.8.6h-1ubuntu3.2) edgy_cacti: released (0.8.6h-3ubuntu0.3) feisty_cacti: released (0.8.6i-3ubuntu0.2) gutsy_cacti: released (0.8.6j-1.1ubuntu0.2) devel_cacti: released (0.8.7a-2ubuntu1)