CVE-2022-39376
- EPSS 0.11%
- Veröffentlicht 03.11.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 07:18:10
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. Users may be able to inject custom fields values in `m...
CVE-2022-39277
- EPSS 0.11%
- Veröffentlicht 03.11.2022 16:15:09
- Zuletzt bearbeitet 21.11.2024 07:17:56
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. External links are not properly sanitized and can ther...
CVE-2022-39323
- EPSS 1.4%
- Veröffentlicht 03.11.2022 15:15:12
- Zuletzt bearbeitet 21.11.2024 07:18:02
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. Time based attack using a SQL injection in api REST us...
CVE-2022-39276
- EPSS 0.12%
- Veröffentlicht 03.11.2022 14:15:23
- Zuletzt bearbeitet 21.11.2024 07:17:56
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. Usage of RSS feeds or an external calendar in planning...
CVE-2022-39262
- EPSS 0.08%
- Veröffentlicht 03.11.2022 14:15:12
- Zuletzt bearbeitet 21.11.2024 07:17:54
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package, GLPI administrator can define rich-text content to be displayed on login page. The displayed content is can contains malicious code that...
CVE-2022-39234
- EPSS 0.17%
- Veröffentlicht 03.11.2022 14:15:10
- Zuletzt bearbeitet 21.11.2024 07:17:50
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. Deleted/deactivated user could continue to use their a...
CVE-2022-35914
- EPSS 94.4%
- Veröffentlicht 19.09.2022 16:15:11
- Zuletzt bearbeitet 12.03.2025 19:27:16
/vendor/htmlawed/htmlawed/htmLawedTest.php in the htmlawed module for GLPI through 10.0.2 allows PHP code injection.
CVE-2022-31143
- EPSS 0.34%
- Veröffentlicht 14.09.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:03:59
GLPI stands for Gestionnaire Libre de Parc Informatique and is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. It was found that in affected versions there is an expo...
CVE-2022-31187
- EPSS 0.32%
- Veröffentlicht 14.09.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:04:04
GLPI stands for Gestionnaire Libre de Parc Informatique and is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. Affected versions were found to not properly neutralize...
CVE-2022-35945
- EPSS 0.34%
- Veröffentlicht 14.09.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:12:01
GLPI stands for Gestionnaire Libre de Parc Informatique and is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. Information associated to registration key are not prop...