Impact
GLPI administrator can define rich-text content to be displayed on login page.
The displayed content is can contains malicious code that can be used to steal credentials.
Patches
Upgrade to 10.0.4.
For more information
If you have any questions or comments about this advisory, mail us at [email protected].
Impact
GLPI administrator can define rich-text content to be displayed on login page.
The displayed content is can contains malicious code that can be used to steal credentials.
Patches
Upgrade to 10.0.4.
For more information
If you have any questions or comments about this advisory, mail us at [email protected].