Vulnerabilities
Vulnerable Software
Glpi-Project:  >> Glpi  >> 0.90.5  Security Vulnerabilities
GLPI before 9.1.5.1 has SQL Injection in the condition rule field, exploitable via front/rulesengine.test.php.
CVSS Score
8.8
EPSS Score
0.002
Published
2017-07-20
GLPI before 9.1.5 allows SQL injection via an ajax/getDropdownValue.php request with an entity_restrict parameter that is not a list of integers.
CVSS Score
9.8
EPSS Score
0.003
Published
2017-07-17


Contact Us

Shodan ® - All rights reserved