Snipeitapp

Snipe-it

132 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.3%
  • Veröffentlicht 24.09.2026 16:40:34
  • Zuletzt bearbeitet 29.09.2026 16:50:07

Snipe-IT is an IT asset/license management system. Prior to 8.7.0, a user with the customfields.create permission can store markup in CustomField.name, and app/Presenters/AssetPresenter.php assigns that value as an unescaped bootstrap-table header ti...

Exploit
  • EPSS 0.27%
  • Veröffentlicht 24.09.2026 16:37:09
  • Zuletzt bearbeitet 29.09.2026 18:49:38

Snipe-IT is an IT asset/license management system. Prior to 8.7.0, a password-authenticated session for an account with self.api permission can reach the personal-access-token API flow before completing the account's second-factor challenge because C...

Exploit
  • EPSS 0.24%
  • Veröffentlicht 24.09.2026 16:29:57
  • Zuletzt bearbeitet 29.09.2026 16:50:21

Snipe-IT is an IT asset/license management system. Prior to 8.7.0, the uploaded-files API endpoint GET /api/v1/{object_type}/{id}/files/{file_id} allows an authenticated user with file-management access to upload XML and XSLT attachments and request ...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 10.09.2026 13:05:41
  • Zuletzt bearbeitet 29.09.2026 19:10:45

Snipe-IT's predefined kit checkout path does not enforce Full Multiple Company Support (FMCS) tenant isolation on the checkout target. Unlike the single, bulk, API, accessory, license and consumable checkout paths, App\Services\PredefinedKitCheckoutS...

Exploit
  • EPSS 0.17%
  • Veröffentlicht 09.09.2026 13:32:30
  • Zuletzt bearbeitet 20.09.2026 01:16:31

Snipe-IT versions before 8.7.0 contain a broken access control vulnerability in AssetModelPolicy where the files() method cascades from assets.files permission, allowing authenticated users to upload and delete file attachments on Asset Model records...

Exploit
  • EPSS 0.18%
  • Veröffentlicht 09.09.2026 13:32:29
  • Zuletzt bearbeitet 16.09.2026 20:23:42

Snipe-IT through version 8.6.3 fails to perform object-level authorization in the updateLicense, updateConsumable, updateAccessory, and updateModel endpoints and in the storeModel endpoint for Predefined Kits. The existing check authorizes only the p...

Exploit
  • EPSS 0.14%
  • Veröffentlicht 09.09.2026 13:32:28
  • Zuletzt bearbeitet 16.09.2026 20:28:56

Snipe-IT versions before 8.7.0 contain a stored cross-site scripting vulnerability in DepartmentPresenter::formattedNameLink() where department names are rendered unescaped in the fallback branch for users without departments.view permission. Users w...

Exploit
  • EPSS 0.28%
  • Veröffentlicht 09.09.2026 13:32:27
  • Zuletzt bearbeitet 16.09.2026 20:28:43

Snipe-IT before 8.7.0 fails to validate username case sensitivity during SAML authentication, allowing attackers to authenticate as different users by registering IdP accounts with accent or case variants of victim usernames. Attackers can exploit th...

Exploit
  • EPSS 0.19%
  • Veröffentlicht 09.09.2026 13:32:27
  • Zuletzt bearbeitet 16.09.2026 20:28:50

Snipe-IT versions before 8.7.0 fail to HTML-escape the employee_num field in the acceptance PDF generator, allowing attackers with users.edit permission to inject img tags into TCPDF's writeHTML() function. Attackers can craft a malicious employee_nu...

Exploit
  • EPSS 0.16%
  • Veröffentlicht 09.09.2026 13:32:26
  • Zuletzt bearbeitet 20.09.2026 01:16:31

Snipe-IT versions before 8.7.0 contain an improper ownership management vulnerability in the consumables checkout API endpoint that records the checkout target user's id in the created_by column instead of the authenticated caller's id. Authenticated...