Vulnerabilities > Glpi Project > Glpi > 0.68.3.2
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2011-08-05 | CVE-2011-2720 | Information Exposure vulnerability in Glpi-Project Glpi The autocompletion functionality in GLPI before 0.80.2 does not blacklist certain username and password fields, which allows remote attackers to obtain sensitive information via a crafted POST request. | 5.0 |