Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in GLPI before 9.4.1. After a successful password reset by a user, it is possible to change that user's password again during the next 24 hours without any information except the associated email address.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Teclib GLPI 授权问题漏洞
Vulnerability Description
Teclib GLPI是法国Teclib公司的一套开源的IT资产管理套件。该套件包含设备状态管理、资产清单存储、管理流程和工作日志管理等功能。 Teclib GLPI 9.4.1之前版本中存在安全漏洞。在用户重置密码后,攻击者可借助相关的邮件地址利用该漏洞更改用户密码。
CVSS Information
N/A
Vulnerability Type
N/A