Impact
An unauthenticated user can provide a malicious link to a GLPI technician in order to exploit a reflected XSS vulnerability located in the reports pages.
Patches
Upgrade to 10.0.17.
For more information
If you have any questions or comments about this advisory, mail us at glpi-security@ow2.org.
Impact
An unauthenticated user can provide a malicious link to a GLPI technician in order to exploit a reflected XSS vulnerability located in the reports pages.
Patches
Upgrade to 10.0.17.
For more information
If you have any questions or comments about this advisory, mail us at glpi-security@ow2.org.