{"id":"CVE-2011-4824","details":"SQL injection vulnerability in auth_login.php in Cacti before 0.8.7h allows remote attackers to execute arbitrary SQL commands via the login_username parameter.","modified":"2026-01-27T04:12:57.235452Z","published":"2011-12-15T03:57:34Z","withdrawn":"2026-01-27T04:12:57.235452Z","references":[{"type":"ADVISORY","url":"http://secunia.com/advisories/44133"},{"type":"ADVISORY","url":"http://secunia.com/advisories/46876"},{"type":"WEB","url":"http://bugs.cacti.net/view.php?id=2062"},{"type":"WEB","url":"http://forums.cacti.net/viewtopic.php?f=21&t=44116"},{"type":"WEB","url":"http://lists.fedoraproject.org/pipermail/package-announce/2011-November/069126.html"},{"type":"WEB","url":"http://lists.fedoraproject.org/pipermail/package-announce/2011-November/069137.html"},{"type":"WEB","url":"http://lists.fedoraproject.org/pipermail/package-announce/2011-November/069141.html"},{"type":"WEB","url":"http://svn.cacti.net/viewvc?view=rev&revision=6807"},{"type":"WEB","url":"http://www.cacti.net/release_notes_0_8_7h.php"},{"type":"WEB","url":"http://www.securityfocus.com/bid/50671"},{"type":"WEB","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/71326"}],"schema_version":"1.7.3"}