cve/2024/CVE-2024-27098.md
2024-05-25 21:48:12 +02:00

818 B

CVE-2024-27098

Description

GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing. An authenticated user can execute a SSRF based attack using Arbitrary Object Instantiation. This issue has been patched in version 10.0.13.

POC

Reference

No PoCs from references.

Github