Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-43779

Опубликовано: 05 янв. 2022
Источник: ubuntu
Приоритет: low
CVSS2: 9
CVSS3: 9.9

Описание

GLPI is an open source IT Asset Management, issue tracking system and service desk system. The GLPI addressing plugin in versions < 2.9.1 suffers from authenticated Remote Code Execution vulnerability, allowing access to the server's underlying operating system using command injection abuse of functionality. There is no workaround for this issue and users are advised to upgrade or to disable the addressing plugin.

РелизСтатусПримечание
esm-apps/xenial

needed

trusty

ignored

end of standard support
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

9 Critical

CVSS2

9.9 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.9
nvd
около 4 лет назад

GLPI is an open source IT Asset Management, issue tracking system and service desk system. The GLPI addressing plugin in versions < 2.9.1 suffers from authenticated Remote Code Execution vulnerability, allowing access to the server's underlying operating system using command injection abuse of functionality. There is no workaround for this issue and users are advised to upgrade or to disable the addressing plugin.

CVSS3: 9.9
debian
около 4 лет назад

GLPI is an open source IT Asset Management, issue tracking system and ...

9 Critical

CVSS2

9.9 Critical

CVSS3