Lucene search

K

Glpi-agent Security Vulnerabilities

cve
cve

CVE-2024-28240

The GLPI Agent is a generic management agent. A vulnerability that only affects GLPI-Agent installed on windows via MSI packaging can allow a local user to cause denial of agent service by replacing GLPI server url with a wrong url or disabling the service. Additionally, in the case the Deploy...

7.3CVSS

6.9AI Score

0.0004EPSS

2024-04-25 05:15 PM
26
cve
cve

CVE-2024-28241

The GLPI Agent is a generic management agent. Prior to version 1.7.2, a local user can modify GLPI-Agent code or used DLLs to modify agent logic and even gain higher privileges. Users should upgrade to GLPI-Agent 1.7.2 to receive a patch. As a workaround, use the default installation folder which.....

7.3CVSS

6.8AI Score

0.0004EPSS

2024-04-25 05:15 PM
28
cve
cve

CVE-2023-34254

The GLPI Agent is a generic management agent. Prior to version 1.5, if glpi-agent is running remoteinventory task against an Unix platform with ssh command, an administrator user on the remote can manage to inject a command in a specific workflow the agent would run with the privileges it uses. In....

7.6CVSS

7AI Score

0.001EPSS

2023-06-23 09:15 PM
23