| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-51446 | GLPI LDAP Injection during authentication | glpi-project | glpi | Medium | 5.9 | 2024-02-01 15:25:01 | Deep Dive |
| CVE-2024-23645 | GLPI reflected XSS in reports pages | glpi-project | glpi | Medium | 6.5 | 2024-02-01 15:24:57 | Deep Dive |
| CVE-2023-46727 🧪 | GLPI SQL injection through inventory agent request EPSS 0.68 | glpi-project | glpi | High | 8.6 | 2023-12-13 18:26:36 | Deep Dive |
| CVE-2023-46726 🧪 | GLPI Remote code execution from LDAP server configuration form on PHP 7.4 | glpi-project | glpi | High | 7.2 | 2023-12-13 18:25:06 | Deep Dive |
| CVE-2023-43813 | glpi Authenticated SQL Injection EPSS 0.31 | glpi-project | glpi | Medium | 6.5 | 2023-12-13 18:17:21 | Deep Dive |
| CVE-2023-42802 🧪 | GLPI vulnerable to unallowed PHP script execution | glpi-project | glpi | Critical | 10.0 | 2023-11-02 13:32:34 | Deep Dive |
| CVE-2023-42462 🧪 | File deletion through document upload process in GLPI | glpi-project | glpi | High | 7.7 | 2023-09-26 22:46:27 | Deep Dive |
| CVE-2023-42461 | SQL injection in ITIL actors in GLPI | glpi-project | glpi | Medium | 6.5 | 2023-09-26 22:45:26 | Deep Dive |
| CVE-2023-41888 | Phishing through a login page malicious URL in GLPI | glpi-project | glpi | Medium | 5.3 | 2023-09-26 22:44:02 | Deep Dive |
| CVE-2023-41326 🧪 | Account takeover via Kanban feature in GLPI EPSS 0.31 | glpi-project | glpi | High | 8.1 | 2023-09-26 22:40:50 | Deep Dive |
| CVE-2023-41324 🧪 | Account takeover through API in GLPI | glpi-project | glpi | High | 8.1 | 2023-09-26 22:37:36 | Deep Dive |
| CVE-2023-41323 | Users login enumeration by unauthenticated user in GLPI EPSS 0.34 | glpi-project | glpi | Medium | 5.3 | 2023-09-26 22:35:37 | Deep Dive |
| CVE-2023-41322 | Privilege Escalation from technician to super-admin in GLPI | glpi-project | glpi | Medium | 4.9 | 2023-09-26 22:34:06 | Deep Dive |
| CVE-2023-41321 | Sensitive fields enumeration through API in GLPI | glpi-project | glpi | Medium | 4.9 | 2023-09-26 21:16:32 | Deep Dive |
| CVE-2023-41320 🧪 | Account takeover via SQL Injection in UI layout preferences in GLPI EPSS 0.32 | glpi-project | glpi | High | 8.1 | 2023-09-26 21:15:39 | Deep Dive |
| CVE-2023-37278 | GLPI vulnerable to SQL injection via dashboard administration | glpi-project | glpi | Medium | 6.8 | 2023-07-13 22:37:30 | Deep Dive |
| CVE-2023-36808 | GLPI vulnerable to SQL injection through Computer Virtual Machine information EPSS 0.48 | glpi-project | glpi | High | 8.6 | 2023-07-05 20:52:49 | Deep Dive |
| CVE-2023-35940 | GLPI vulnerable to unauthenticated access to Dashboard data | glpi-project | glpi | High | 7.5 | 2023-07-05 20:46:04 | Deep Dive |
| CVE-2023-35939 | GLPI vulnerable to unauthorized access to Dashboard data | glpi-project | glpi | High | 8.1 | 2023-07-05 20:42:52 | Deep Dive |
| CVE-2023-35924 | GLPI vulnerable to SQL injection via inventory agent request EPSS 0.51 | glpi-project | glpi | High | 8.6 | 2023-07-05 19:35:33 | Deep Dive |