CVE-2024-37148
10.07.2024, 20:15
GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses tracking and software auditing. An authenticated user can exploit a SQL injection vulnerability in some AJAX scripts to alter another user account data and take control of it. Upgrade to 10.0.16.
Vendor | Product | Version |
---|---|---|
glpi-project | glpi | 0.84 ≤ 𝑥 < 10.0.16 |
𝑥
= Vulnerable software versions

Ubuntu Releases