CVE-2025-53360mediumCWE-284

CVE-2025-53360: medium-severity vulnerability in pluginsGLPI databaseinventory

pluginsGLPI's Database Inventory Plugin allows any authenticated user to send agent requests

Published

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 4.3epss 0.3%
exploitation probability
0.3%top 80% of all CVEs
observed exploitation
nono source reports it
pluginsGLPI's Database Inventory Plugin "manages" the Teclib' inventory agents in order to perform an inventory of the databases present on the workstation. In versions prior to 1.0.3, any authenticated user could send requests to agents. This issue has been patched in version 1.0.3.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Related CVEs — pluginsGLPI databaseinventory

In the same product, most dangerous first.