Lucene search

K
osvGoogleOSV:CVE-2020-27662
HistoryNov 26, 2020 - 5:15 p.m.

CVE-2020-27662

2020-11-2617:15:11
Google
osv.dev
6

6.5 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

22.7%

In GLPI before 9.5.3, ajax/comments.php has an Insecure Direct Object Reference (IDOR) vulnerability that allows an attacker to read data from any database table (e.g., glpi_tickets, glpi_users, etc.).

6.5 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

22.7%