Vulnerabilities > Glpi Project

DATE CVE VULNERABILITY TITLE RISK
2022-09-14 CVE-2022-36112 Server-Side Request Forgery (SSRF) vulnerability in Glpi-Project Glpi
GLPI stands for Gestionnaire Libre de Parc Informatique and is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing.
network
low complexity
glpi-project CWE-918
5.8
2022-06-28 CVE-2022-31056 SQL Injection vulnerability in Glpi-Project Glpi 10.0.0/10.0.1
GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing.
network
low complexity
glpi-project CWE-89
critical
9.8
2022-06-28 CVE-2022-31061 Unspecified vulnerability in Glpi-Project Glpi
GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing.
network
low complexity
glpi-project
critical
9.8
2022-06-28 CVE-2022-31068 Unspecified vulnerability in Glpi-Project Glpi 10.0.0/10.0.1
GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing.
network
low complexity
glpi-project
5.3
2022-06-27 CVE-2022-31082 SQL Injection vulnerability in Glpi-Project Glpi Inventory 1.0.0/1.0.1
GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing.
network
low complexity
glpi-project CWE-89
critical
9.8
2022-06-20 CVE-2022-31062 Path Traversal vulnerability in Glpi-Project Glpi Inventory 1.0.0/1.0.1
### Impact A plugin public script can be used to read content of system files.
network
low complexity
glpi-project CWE-22
5.3
2022-06-09 CVE-2022-29250 SQL Injection vulnerability in Glpi-Project Glpi 10.0.0
GLPI is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing.
network
low complexity
glpi-project CWE-89
6.5
2022-06-09 CVE-2022-24876 Unspecified vulnerability in Glpi-Project Glpi 10.0.0
GLPI is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing.
network
low complexity
glpi-project
5.4
2022-04-21 CVE-2022-24867 Insufficiently Protected Credentials vulnerability in Glpi-Project Glpi
GLPI is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing.
network
low complexity
glpi-project CWE-522
7.5
2022-04-21 CVE-2022-24868 Cross-site Scripting vulnerability in Glpi-Project Glpi
GLPI is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing.
network
low complexity
glpi-project CWE-79
5.4