CVE-2025-24801
18.03.2025, 19:15
GLPI is a free asset and IT management software package. An authenticated user can upload and force the execution of *.php files located on the GLPI server. This vulnerability is fixed in 10.0.18.Enginsight
Vendor | Product | Version |
---|---|---|
glpi-project | glpi | 0.85 ≤ 𝑥 < 10.0.18 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration