Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
GLPI Inventory Plugin is Vulnerable to Unauthenticated SQL Injection
Vulnerability Description
The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collection for GLPI agents. Versions 1.5.0 and below are vulnerable to SQL Injection. This issue is fixed in version 1.5.1.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
GLPI Inventory Plugin SQL注入漏洞
Vulnerability Description
GLPI Inventory Plugin是法国GLPI开源的一种插件。用于为 GLPI 代理处理各种类型的任务。 GLPI Inventory Plugin 1.5.0及之前版本存在SQL注入漏洞,该漏洞源于用户输入未经过充分验证与转义,可能导致攻击者恶意输入操控数据库。
CVSS Information
N/A
Vulnerability Type
N/A