graph.php in Ganglia PHP RRD Web Client 1.0.2 allows remote attackers to execute arbitrary commands via the command parameter, which is provided to the passthru function.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/7999 | vdb entry |
http://www.securityfocus.com/bid/3962 | vdb entry |
http://securitytracker.com/id?1003376 | vdb entry patch vendor advisory |