← voltar
CVE-2020-15217

User data exposure in GLPI

CVSS 5.3 MEDIUMEPSS 1.0%CWE-79
In GLPI before version 9.5.2, there is a leakage of user information through the public FAQ. The issue was introduced in version 9.5.0 and patched in 9.5.2. As a workaround, disable public access to the FAQ.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Produtos afetados
glpi-project · glpi

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →