Beveiligingsadvies

CVE-2025-25192

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-02-25 17:58:20
Laatst bijgewerkt 2025-03-18 17:03:35
Toegewezen door GitHub_M
CVSS-score 6.5
Status PUBLISHED

Beschrijving

GLPI is a free asset and IT management software package. Prior to version 10.0.18, a low privileged user can enable debug mode and access sensitive information. Version 10.0.18 contains a patch. As a workaround, one may delete the `install/update.php` file.