📦

positions

Vendor: glpi-project

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 1 Remote Access
Total CVEs 1 Total Indexed
Avg. EPSS 7.75% Exploit Prob.
Latest CVE CVE-2022-34128 Apr 16

Security Vulnerability Index

Page 1 / 1
9.8 CVSS
CVE-2022-34128
RCE Exploit Found

The Cartography (aka positions) plugin before 6.0.1 for GLPI allows remote code execution via PHP code in the POST data to front/upload.php.

EPSS: 7.75%