Description

GLPI is a free asset and IT management software package. Prior to version 10.0.18, a low privileged user can enable debug mode and access sensitive information. Version 10.0.18 contains a patch. As a workaround, one may delete the `install/update.php` file.

INFO

Published Date :

2025-02-25T17:58:20.388Z

Last Modified :

2025-03-18T17:03:35.247Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2025-25192 vulnerability.

Vendors Products
Glpi-project
  • Glpi

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact