Lucene search

K
cvelistMitreCVELIST:CVE-2020-27662
HistoryNov 26, 2020 - 4:46 p.m.

CVE-2020-27662

2020-11-2616:46:53
mitre
www.cve.org
1

4.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

22.7%

In GLPI before 9.5.3, ajax/comments.php has an Insecure Direct Object Reference (IDOR) vulnerability that allows an attacker to read data from any database table (e.g., glpi_tickets, glpi_users, etc.).

4.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

22.7%