CVE-2025-64516 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

GLPI is a free asset and IT management software package. Prior to 10.0.21 and 11.0.3, an unauthorized user can access GLPI documents attached to any item (ticke…
High CVSS: 7.5

CVE-2025-64516

GLPI is a free asset and IT management software package. Prior to 10.0.21 and 11.0.3, an unauthorized user can access GLPI documents attached to any item (ticket, asset, ...). If the public FAQ is enabled, this unauthorized access can be performed by an anonymous user. This vulnerability is fixed in 10.0.21 and 11.0.3.
Vendor
Glpi-project
Product
Glpi
CWE
CWE-284
Yayın Tarihi
2026-01-15 16:16:11
Güncelleme
2026-01-21 20:53:37
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar