Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2024-40638

почти 2 года назад

GLPI is a free asset and IT management software package. An authenticated user can exploit multiple SQL injection vulnerabilities. One of them can be used to alter another user account data and take control of it. Upgrade to 10.0.17.

CVSS3: 8.1
EPSS: Средний
nvd логотип

CVE-2024-40638

почти 2 года назад

GLPI is a free asset and IT management software package. An authenticated user can exploit multiple SQL injection vulnerabilities. One of them can be used to alter another user account data and take control of it. Upgrade to 10.0.17.

CVSS3: 8.1
EPSS: Средний
debian логотип

CVE-2024-40638

почти 2 года назад

GLPI is a free asset and IT management software package. An authentica ...

CVSS3: 8.1
EPSS: Средний
fstec логотип

BDU:2024-09424

почти 2 года назад

Уязвимость системы заявок, инцидентов и инвентаризации компьютерного оборудования GLPI, связанная с непринятием мер по защите структуры запроса SQL, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
EPSS: Средний
redos логотип

ROS-20250109-03

больше 1 года назад

Множественные уязвимости glpi

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-40638

GLPI is a free asset and IT management software package. An authenticated user can exploit multiple SQL injection vulnerabilities. One of them can be used to alter another user account data and take control of it. Upgrade to 10.0.17.

CVSS3: 8.1
37%
Средний
почти 2 года назад
nvd логотип
CVE-2024-40638

GLPI is a free asset and IT management software package. An authenticated user can exploit multiple SQL injection vulnerabilities. One of them can be used to alter another user account data and take control of it. Upgrade to 10.0.17.

CVSS3: 8.1
37%
Средний
почти 2 года назад
debian логотип
CVE-2024-40638

GLPI is a free asset and IT management software package. An authentica ...

CVSS3: 8.1
37%
Средний
почти 2 года назад
fstec логотип
BDU:2024-09424

Уязвимость системы заявок, инцидентов и инвентаризации компьютерного оборудования GLPI, связанная с непринятием мер по защите структуры запроса SQL, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
37%
Средний
почти 2 года назад
redos логотип
ROS-20250109-03

Множественные уязвимости glpi

CVSS3: 9.8
больше 1 года назад

Уязвимостей на страницу