Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-35914

/vendor/htmlawed/htmlawed/htmLawedTest.php in the htmlawed module for GLPI through 10.0.2 allows PHP code injection.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.944
EPSS Ranking 100.0%
CVSS Severity
CVSS v3 Score 9.8
Proposed Action
Teclib GLPI contains a remote code execution vulnerability in the third-party library, htmlawed.
Ransomware Campaign
Unknown
References
Products affected by CVE-2022-35914


Contact Us

Shodan ® - All rights reserved