mirror of
				https://github.com/librenms/librenms.git
				synced 2024-10-07 16:52:45 +00:00 
			
		
		
		
	* Security fix: unauthorized access Affects nginx users: Moved php files outside of public html directory (Apache was protected by .htaccess) Affects all users: Some files did not check for authentication and could disclose some info. Better checks before including files from user input * git mv html/includes/ includes/html git mv html/pages/ includes/html/
		
			
				
	
	
		
			50 lines
		
	
	
		
			1.5 KiB
		
	
	
	
		
			PHP
		
	
	
	
	
	
			
		
		
	
	
			50 lines
		
	
	
		
			1.5 KiB
		
	
	
	
		
			PHP
		
	
	
	
	
	
| <?php
 | |
| 
 | |
| require 'includes/html/graphs/common.inc.php';
 | |
| 
 | |
| $rrd_filename = rrd_name($device['hostname'], array('app', 'mysql', $app['app_id'], 'status'));
 | |
| 
 | |
| $array = array(
 | |
|     'State_closing_tables'       => 'd2',
 | |
|     'State_copying_to_tmp_table' => 'd3',
 | |
|     'State_end'                  => 'd4',
 | |
|     'State_freeing_items'        => 'd5',
 | |
|     'State_init'                 => 'd6',
 | |
|     'State_locked'               => 'd7',
 | |
|     'State_login'                => 'd8',
 | |
|     'State_preparing'            => 'd9',
 | |
|     'State_reading_from_net'     => 'da',
 | |
|     'State_sending_data'         => 'db',
 | |
|     'State_sorting_result'       => 'dc',
 | |
|     'State_statistics'           => 'dd',
 | |
|     'State_updating'             => 'de',
 | |
|     'State_writing_to_net'       => 'df',
 | |
|     'State_none'                 => 'dg',
 | |
|     'State_other'                => 'dh',
 | |
| );
 | |
| 
 | |
| $i = 0;
 | |
| if (rrdtool_check_rrd_exists($rrd_filename)) {
 | |
|     foreach ($array as $var => $ds) {
 | |
|         $rrd_list[$i]['filename'] = $rrd_filename;
 | |
|         if (is_array($var)) {
 | |
|             $rrd_list[$i]['descr'] = $var['descr'];
 | |
|         } else {
 | |
|             $rrd_list[$i]['descr'] = $var;
 | |
|         }
 | |
| 
 | |
|         $rrd_list[$i]['descr'] = str_replace('_', ' ', $rrd_list[$i]['descr']);
 | |
|         $rrd_list[$i]['descr'] = str_replace('State ', '', $rrd_list[$i]['descr']);
 | |
|         $rrd_list[$i]['ds']    = $ds;
 | |
|         $i++;
 | |
|     }
 | |
| } else {
 | |
|     echo "file missing: $file";
 | |
| }
 | |
| 
 | |
| $colours   = 'mixed';
 | |
| $nototal   = 1;
 | |
| $unit_text = 'activity';
 | |
| 
 | |
| require 'includes/html/graphs/generic_multi_simplex_seperated.inc.php';
 |