CVE-2023-22724
- EPSS 0.32%
- Veröffentlicht 26.01.2023 21:18:12
- Zuletzt bearbeitet 21.11.2024 07:45:17
GLPI is a Free Asset and IT Management Software package. Versions prior to 10.0.6 are subject to Cross-site Scripting via malicious RSS feeds. An Administrator can import a malicious RSS feed that contains Cross Site Scripting (XSS) payloads inside R...
CVE-2023-22725
- EPSS 0.32%
- Veröffentlicht 26.01.2023 21:18:12
- Zuletzt bearbeitet 21.11.2024 07:45:17
GLPI is a Free Asset and IT Management Software package. Versions 0.6.0 and above, prior to 10.0.6 are vulnerable to Cross-site Scripting. This vulnerability allow for an administrator to create a malicious external link. This issue is patched in 10....
CVE-2022-41941
- EPSS 0.32%
- Veröffentlicht 26.01.2023 21:16:46
- Zuletzt bearbeitet 21.11.2024 07:24:07
GLPI is a Free Asset and IT Management Software package. Versions 10.0.0 and above, prior to 10.0.6, are subject to Cross-site Scripting. An administrator may store malicious code in help links. This issue is patched in 10.0.6.
CVE-2022-39370
- EPSS 0.15%
- Veröffentlicht 03.11.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 07:18:09
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. Connected users may gain access to debug panel through...
CVE-2022-39371
- EPSS 0.26%
- Veröffentlicht 03.11.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 07:18:09
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. Script related HTML tags in assets inventory informati...
CVE-2022-39372
- EPSS 0.29%
- Veröffentlicht 03.11.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 07:18:09
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. Authenticated users may store malicious code in their ...
CVE-2022-39373
- EPSS 0.3%
- Veröffentlicht 03.11.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 07:18:09
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. Administrator may store malicious code in entity name....
CVE-2022-39375
- EPSS 0.29%
- Veröffentlicht 03.11.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 07:18:09
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. Users may be able to create a public RSS feed to injec...
CVE-2022-39376
- EPSS 0.22%
- Veröffentlicht 03.11.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 07:18:10
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. Users may be able to inject custom fields values in `m...
CVE-2022-39277
- EPSS 0.29%
- Veröffentlicht 03.11.2022 16:15:09
- Zuletzt bearbeitet 21.11.2024 07:17:56
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. External links are not properly sanitized and can ther...