Описание
In GLPI before version 9.5.2, there is a leakage of user information through the public FAQ. The issue was introduced in version 9.5.0 and patched in 9.5.2. As a workaround, disable public access to the FAQ.
Ссылки
- PatchThird Party Advisory
- Third Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 9.5.0 (включая) до 9.5.2 (исключая)
cpe:2.3:a:glpi-project:glpi:*:*:*:*:*:*:*:*
EPSS
Процентиль: 46%
0.00234
Низкий
5.3 Medium
CVSS3
5 Medium
CVSS2
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 5.3
ubuntu
больше 5 лет назад
In GLPI before version 9.5.2, there is a leakage of user information through the public FAQ. The issue was introduced in version 9.5.0 and patched in 9.5.2. As a workaround, disable public access to the FAQ.
CVSS3: 5.3
debian
больше 5 лет назад
In GLPI before version 9.5.2, there is a leakage of user information t ...
EPSS
Процентиль: 46%
0.00234
Низкий
5.3 Medium
CVSS3
5 Medium
CVSS2
Дефекты
CWE-79