← volver
CVE-2025-32786highCWE-89

GLPI Inventory Plugin is Vulnerable to Unauthenticated SQL Injection

21Vexday Risk Score

Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.

ssvc Trackcvss 7.5epss 6.6%
probabilidad de explotación
6.6%top 7% de las CVE
explotación observada
noninguna fuente lo reporta
The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collection for GLPI agents. Versions 1.5.0 and below are vulnerable to SQL Injection. This issue is fixed in version 1.5.1.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N