CVE-2025-23024 - GLPI Unauthenticated Plugin Disabling Vulnerability
CVE ID : CVE-2025-23024 Published : Feb. 25, 2025, 4:15 p.m. | 1 hour, 14 minutes ago Description : GLPI is a free asset and IT management software package. Starting in version 0.72 and prior to version 10.0.18, an anonymous user can disable all the active plugins. Version 10.0.18 contains a patch. As a workaround, one may delete the `install/update.php` file. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Published : Feb. 25, 2025, 4:15 p.m. | 1 hour, 14 minutes ago
Description : GLPI is a free asset and IT management software package. Starting in version 0.72 and prior to version 10.0.18, an anonymous user can disable all the active plugins. Version 10.0.18 contains a patch. As a workaround, one may delete the `install/update.php` file.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...