Vulnerabilities > Glpi Project > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-02-01 CVE-2024-23645 Cross-site Scripting vulnerability in Glpi-Project Glpi
GLPI is a Free Asset and IT Management Software package.
network
low complexity
glpi-project CWE-79
6.1
2023-09-27 CVE-2023-41321 Unspecified vulnerability in Glpi-Project Glpi
GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing.
network
low complexity
glpi-project
6.5
2023-09-27 CVE-2023-41323 Unspecified vulnerability in Glpi-Project Glpi
GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing.
network
low complexity
glpi-project
5.3
2023-09-27 CVE-2023-41888 Path Traversal vulnerability in Glpi-Project Glpi 10.0.9
GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing.
network
low complexity
glpi-project CWE-22
5.4
2023-07-05 CVE-2023-34107 Incorrect Authorization vulnerability in Glpi-Project Glpi
GLPI is a free asset and IT management software package.
network
low complexity
glpi-project CWE-863
6.5
2023-07-05 CVE-2023-34244 Cross-site Scripting vulnerability in Glpi-Project Glpi
GLPI is a free asset and IT management software package.
network
low complexity
glpi-project CWE-79
6.1
2023-07-05 CVE-2023-34106 Incorrect Authorization vulnerability in Glpi-Project Glpi
GLPI is a free asset and IT management software package.
network
low complexity
glpi-project CWE-863
6.5
2023-04-16 CVE-2022-34125 Information Exposure vulnerability in Glpi-Project Cmdb
front/icon.send.php in the CMDB plugin before 3.0.3 for GLPI allows attackers to gain read access to sensitive information via a _log/ pathname in the file parameter.
network
low complexity
glpi-project CWE-200
6.5
2023-01-26 CVE-2023-22722 Cross-site Scripting vulnerability in Glpi-Project Glpi
GLPI is a Free Asset and IT Management Software package.
network
low complexity
glpi-project CWE-79
6.1
2023-01-26 CVE-2023-22724 Cross-site Scripting vulnerability in Glpi-Project Glpi
GLPI is a Free Asset and IT Management Software package.
network
low complexity
glpi-project CWE-79
4.8