Описание
front/backup.php in GLPI before 9.1.5 allows remote authenticated administrators to delete arbitrary files via a crafted file parameter.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| glpi | removed | package |
Примечания
Only supported behind an authenticated HTTP zone
EPSS
Процентиль: 73%
0.01508
Низкий
Связанные уязвимости
CVSS3: 4.9
ubuntu
около 9 лет назад
front/backup.php in GLPI before 9.1.5 allows remote authenticated administrators to delete arbitrary files via a crafted file parameter.
CVSS3: 4.9
nvd
около 9 лет назад
front/backup.php in GLPI before 9.1.5 allows remote authenticated administrators to delete arbitrary files via a crafted file parameter.
CVSS3: 4.9
github
больше 4 лет назад
front/backup.php in GLPI before 9.1.5 allows remote authenticated administrators to delete arbitrary files via a crafted file parameter.
EPSS
Процентиль: 73%
0.01508
Низкий