GLPI is a free asset and IT management software package. Versions of the software starting with 9.2.0 and prior to 10.0.8 have an incorrect rights check on a on a file accessible by an authenticated user, allows access to the view all KnowbaseItems. Version 10.0.8 has a patch for this issue.
Metrics
Affected Vendors & Products
References
History
Thu, 24 Oct 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2023-07-05T19:15:31.060Z
Updated: 2024-10-24T17:59:56.346Z
Reserved: 2023-05-25T21:56:51.246Z
Link: CVE-2023-34107
Vulnrichment
Updated: 2024-08-02T16:01:54.202Z
NVD
Status : Modified
Published: 2023-07-05T20:15:10.177
Modified: 2024-11-21T08:06:33.697
Link: CVE-2023-34107
Redhat
No data.