Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-26903 | GLPI is a free asset and IT management software package. Prior to version 9.5.7, an entity administrator is capable of retrieving normally inaccessible data via SQL injection. Version 9.5.7 contains a patch for this issue. As a workaround, disabling the `Entities` update right prevents exploitation of this vulnerability. |
Mon, 05 May 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-05-05T16:33:40.425Z
Reserved: 2021-11-16T00:00:00.000Z
Link: CVE-2022-21720
Updated: 2024-08-03T02:53:34.845Z
Status : Modified
Published: 2022-01-28T11:15:08.223
Modified: 2025-05-05T17:17:47.720
Link: CVE-2022-21720
No data.
OpenCVE Enrichment
No data.
EUVD