Launchpad.net

CVE 2015-4634

SQL injection vulnerability in graphs.php in Cacti before 0.8.8e allows remote attackers to execute arbitrary SQL commands via the local_graph_id parameter.

See the CVE page on Mitre.org for more details.