CVE Vulnerabilities

CVE-2014-5032

Published: Apr 14, 2015 | Modified: Apr 15, 2015
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

GLPI before 0.84.7 does not properly restrict access to cost information, which allows remote attackers to obtain sensitive information via the cost criteria in the search bar.

Affected Software

Name Vendor Start Version End Version
Glpi Glpi-project * 0.84.6 (including)
Glpi Ubuntu lucid *
Glpi Ubuntu precise *
Glpi Ubuntu trusty *
Glpi Ubuntu upstream *
Glpi Ubuntu utopic *
Glpi Ubuntu vivid *
Glpi Ubuntu wily *

References