发布于3月6日3月6日 Members FreeBSD: VID-6091D1D8-4347-11EF-A4D4-080027957747 (CVE-2024-37149): GLPI -- multiple vulnerabilities Severity 9 CVSS (AV:N/AC:L/Au:S/C:C/I:C/A:C) Published 06/03/2024 Created 07/31/2024 Added 07/29/2024 Modified 01/28/2025 Description GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses tracking and software auditing. An authenticated technician user can upload a malicious PHP script and hijack the plugin loader to execute this malicious script. Upgrade to 10.0.16. Solution(s) freebsd-upgrade-package-glpi References CVE-2024-37149
参与讨论
你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。