Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Unauthenticated Local File Inclusion
Vulnerability Description
### Impact A plugin public script can be used to read content of system files. ### Patches Upgrade to version 1.0.2. ### Workarounds `b/deploy/index.php` file can be deleted if deploy feature is not used.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
对路径名的限制不恰当(路径遍历)
Vulnerability Title
GLPI Inventory Plugin 路径遍历漏洞
Vulnerability Description
GLPI Inventory Plugin是法国GLPI开源的一种插件。用于为 GLPI 代理处理各种类型的任务。 GLPI Inventory Plugin 1.0.2 之前版本存在路径遍历漏洞,该漏洞源于公共脚本可用于读取系统文件的内容。
CVSS Information
N/A
Vulnerability Type
N/A