PT-2015-7578 · Teclib+1 · Glpi+1

Peter Stiehl

·

Published

2015-06-20

·

Updated

2015-10-06

·

CVE-2015-7684

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions GLPI versions prior to 0.85.3
Description The issue allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as an attachment to a new ticket and then accessing it directly. This is achieved by adding the file to files/ tmp/ and then making a direct request to the file.
Recommendations For versions prior to 0.85.3, update to version 0.85.3 or later to resolve the issue. As a temporary workaround, consider restricting access to the files/ tmp/ directory to prevent direct requests to uploaded files. Additionally, restrict the types of files that can be uploaded as attachments to prevent executable files from being added.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

ALT-PU-2015-1558
CVE-2015-7684

Affected Products

Alt Linux
Glpi