Filtered by vendor Glpi-project Subscriptions
Filtered by product Positions Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-34128 1 Glpi-project 1 Positions 2024-11-21 9.8 Critical
The Cartography (aka positions) plugin before 6.0.1 for GLPI allows remote code execution via PHP code in the POST data to front/upload.php.