PT-2025-31387 · Glpi · Glpi

Cconard96

·

Published

2025-07-30

·

Updated

2025-07-30

·

CVE-2025-53111

CVSS v3.1
6.5
VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Name of the Vulnerable Software and Affected Versions:

GLPI versions 0.80 through 10.0.18

Description:

GLPI is an Asset and IT Management Software package. A missing permission check can allow unauthorized access to some resources.

Recommendations:

Update to version 10.0.19 or later.

Fix

Missing Authorization

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2025-53111
GHSA-P665-MQCR-J96J

Affected Products

Glpi