Описание
front/backup.php in GLPI before 9.1.5 allows remote authenticated administrators to delete arbitrary files via a crafted file parameter.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| glpi | removed | package |
Примечания
Only supported behind an authenticated HTTP zone
EPSS
Процентиль: 61%
0.00414
Низкий
Связанные уязвимости
CVSS3: 4.9
ubuntu
больше 8 лет назад
front/backup.php in GLPI before 9.1.5 allows remote authenticated administrators to delete arbitrary files via a crafted file parameter.
CVSS3: 4.9
nvd
больше 8 лет назад
front/backup.php in GLPI before 9.1.5 allows remote authenticated administrators to delete arbitrary files via a crafted file parameter.
CVSS3: 4.9
github
больше 3 лет назад
front/backup.php in GLPI before 9.1.5 allows remote authenticated administrators to delete arbitrary files via a crafted file parameter.
EPSS
Процентиль: 61%
0.00414
Низкий