Vulnerabilities
Vulnerable Software
Glpi-Project:  >> Glpi  >> 0.78.3  Security Vulnerabilities
Multiple cross-site scripting (XSS) vulnerabilities in GLPI-PROJECT GLPI before 0.83.3 allow remote attackers to inject arbitrary web script or HTML via unknown vectors.
CVSS Score
4.3
EPSS Score
0.003
Published
2012-10-09
PHP remote file inclusion vulnerability in front/popup.php in GLPI 0.78 through 0.80.61 allows remote authenticated users to execute arbitrary PHP code via a URL in the sub_type parameter.
CVSS Score
6.5
EPSS Score
0.006
Published
2012-07-12
The autocompletion functionality in GLPI before 0.80.2 does not blacklist certain username and password fields, which allows remote attackers to obtain sensitive information via a crafted POST request.
CVSS Score
5.0
EPSS Score
0.01
Published
2011-08-05


Contact Us

Shodan ® - All rights reserved