Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2023-41326

почти 3 года назад

GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. A logged user from any profile can hijack the Kanban feature to alter any user field, and end-up with stealing its account. Users are advised to upgrade to version 10.0.10. There are no known workarounds for this vulnerability.

CVSS3: 8.1
EPSS: Средний
nvd логотип

CVE-2023-41326

почти 3 года назад

GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. A logged user from any profile can hijack the Kanban feature to alter any user field, and end-up with stealing its account. Users are advised to upgrade to version 10.0.10. There are no known workarounds for this vulnerability.

CVSS3: 8.1
EPSS: Средний
debian логотип

CVE-2023-41326

почти 3 года назад

GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asse ...

CVSS3: 8.1
EPSS: Средний
fstec логотип

BDU:2023-07847

почти 3 года назад

Уязвимость функции Kanban системы заявок, инцидентов и инвентаризации компьютерного оборудования GLPI, позволяющая нарушителю получить несанкционированный доступ к учетной записью произвольного пользователя

CVSS3: 8.8
EPSS: Средний
redos логотип

ROS-20231109-02

больше 2 лет назад

Множественные уязвимости glpi

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-41326

GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. A logged user from any profile can hijack the Kanban feature to alter any user field, and end-up with stealing its account. Users are advised to upgrade to version 10.0.10. There are no known workarounds for this vulnerability.

CVSS3: 8.1
31%
Средний
почти 3 года назад
nvd логотип
CVE-2023-41326

GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. A logged user from any profile can hijack the Kanban feature to alter any user field, and end-up with stealing its account. Users are advised to upgrade to version 10.0.10. There are no known workarounds for this vulnerability.

CVSS3: 8.1
31%
Средний
почти 3 года назад
debian логотип
CVE-2023-41326

GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asse ...

CVSS3: 8.1
31%
Средний
почти 3 года назад
fstec логотип
BDU:2023-07847

Уязвимость функции Kanban системы заявок, инцидентов и инвентаризации компьютерного оборудования GLPI, позволяющая нарушителю получить несанкционированный доступ к учетной записью произвольного пользователя

CVSS3: 8.8
31%
Средний
почти 3 года назад
redos логотип
ROS-20231109-02

Множественные уязвимости glpi

CVSS3: 9.8
больше 2 лет назад

Уязвимостей на страницу