Skip to content

Known CVE

Teclib GLPI <= 9.3.3 - Unauthenticated SQL Injection

Teclib GLPI <= 9.3.3 exposes a script (/scripts/unlock_tasks.php) that incorrectly sanitizes user controlled data before using it in SQL queries. Thus, an attacker could abuse the affected feature to alter the semantic original SQL query and retrieve database records.

CVE-2019-10232

Critical2019CVSS 9.8CWE-89

cve2019 · glpi · sqli · injection · teclib-edition · vkev · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website