Описание
An issue in GLPI v.10.0.12 and before allows a remote attacker to execute arbitrary code, escalate privileges, and obtain sensitive information via a crafted script to the title field.
An issue in GLPI v.10.0.12 and before allows a remote attacker to execute arbitrary code, escalate privileges, and obtain sensitive information via a crafted script to the title field.
Связанные уязвимости
GLPI through 10.0.12 allows CSV injection by an attacker who is able to create an asset with a crafted title.
GLPI through 10.0.12 allows CSV injection by an attacker who is able to create an asset with a crafted title.
GLPI through 10.0.12 allows CSV injection by an attacker who is able t ...
Уязвимость программного обеспечения для управления активами и центрами обработки данных GLPI, связанная с неправильным контролем доступа, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации