Vulnerabilities > Glpi Project > Glpi > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-11-03 CVE-2022-39276 Server-Side Request Forgery (SSRF) vulnerability in Glpi-Project Glpi
GLPI stands for Gestionnaire Libre de Parc Informatique.
network
low complexity
glpi-project CWE-918
5.3
2022-06-28 CVE-2022-31068 Unspecified vulnerability in Glpi-Project Glpi 10.0.0/10.0.1
GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing.
network
low complexity
glpi-project
5.0
2022-06-09 CVE-2022-29250 SQL Injection vulnerability in Glpi-Project Glpi 10.0.0
GLPI is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing.
network
low complexity
glpi-project CWE-89
4.0
2022-01-28 CVE-2022-21720 SQL Injection vulnerability in Glpi-Project Glpi
GLPI is a free asset and IT management software package.
network
low complexity
glpi-project CWE-89
4.0
2022-01-28 CVE-2022-21719 Cross-site Scripting vulnerability in Glpi-Project Glpi
GLPI is a free asset and IT management software package.
4.3
2021-09-15 CVE-2021-39210 Incorrect Permission Assignment for Critical Resource vulnerability in Glpi-Project Glpi
GLPI is a free Asset and IT management software package.
network
low complexity
glpi-project CWE-732
6.5
2021-09-15 CVE-2021-39211 Unspecified vulnerability in Glpi-Project Glpi
GLPI is a free Asset and IT management software package.
network
low complexity
glpi-project
5.0
2021-09-15 CVE-2021-39213 Injection vulnerability in Glpi-Project Glpi
GLPI is a free Asset and IT management software package.
6.0
2021-09-15 CVE-2021-39209 Cross-Site Request Forgery (CSRF) vulnerability in Glpi-Project Glpi
GLPI is a free Asset and IT management software package.
6.8
2021-05-26 CVE-2021-3486 Cross-site Scripting vulnerability in Glpi-Project Glpi 9.5.4
GLPi 9.5.4 does not sanitize the metadata.
network
low complexity
glpi-project CWE-79
6.1