Логотип exploitDog
bind: "CVE-2025-52567"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2025-52567"

Количество 5

Количество 5

ubuntu логотип

CVE-2025-52567

6 месяцев назад

GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing. In versions 0.84 through 10.0.18, usage of RSS feeds or external calendars when planning is subject to SSRF exploit. The previous security patches provided since GLPI 10.0.4 were not robust enough for certain specific cases. This is fixed in version 10.0.19.

CVSS3: 3.5
EPSS: Низкий
nvd логотип

CVE-2025-52567

6 месяцев назад

GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing. In versions 0.84 through 10.0.18, usage of RSS feeds or external calendars when planning is subject to SSRF exploit. The previous security patches provided since GLPI 10.0.4 were not robust enough for certain specific cases. This is fixed in version 10.0.19.

CVSS3: 3.5
EPSS: Низкий
debian логотип

CVE-2025-52567

6 месяцев назад

GLPI is a Free Asset and IT Management Software package, Data center m ...

CVSS3: 3.5
EPSS: Низкий
fstec логотип

BDU:2025-10946

6 месяцев назад

Уязвимость системы заявок, инцидентов и инвентаризации компьютерного оборудования GLPI, связанная с недостаточной проверкой запросов на стороне сервера, позволяющая нарушителю осуществить SSRF-атаку

CVSS3: 5
EPSS: Низкий
redos логотип

ROS-20250827-07

5 месяцев назад

Множественные уязвимости glpi

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-52567

GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing. In versions 0.84 through 10.0.18, usage of RSS feeds or external calendars when planning is subject to SSRF exploit. The previous security patches provided since GLPI 10.0.4 were not robust enough for certain specific cases. This is fixed in version 10.0.19.

CVSS3: 3.5
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2025-52567

GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing. In versions 0.84 through 10.0.18, usage of RSS feeds or external calendars when planning is subject to SSRF exploit. The previous security patches provided since GLPI 10.0.4 were not robust enough for certain specific cases. This is fixed in version 10.0.19.

CVSS3: 3.5
0%
Низкий
6 месяцев назад
debian логотип
CVE-2025-52567

GLPI is a Free Asset and IT Management Software package, Data center m ...

CVSS3: 3.5
0%
Низкий
6 месяцев назад
fstec логотип
BDU:2025-10946

Уязвимость системы заявок, инцидентов и инвентаризации компьютерного оборудования GLPI, связанная с недостаточной проверкой запросов на стороне сервера, позволяющая нарушителю осуществить SSRF-атаку

CVSS3: 5
0%
Низкий
6 месяцев назад
redos логотип
ROS-20250827-07

Множественные уязвимости glpi

CVSS3: 6.1
5 месяцев назад

Уязвимостей на страницу