Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-21128 | GLPI is a Free Asset and IT Management Software package. A malicious URL can be used to execute XSS on reports pages. Upgrade to 10.0.12. |
No history.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-01T23:06:25.359Z
Reserved: 2024-01-19T00:18:53.233Z
Link: CVE-2024-23645
Updated: 2024-08-01T23:06:25.359Z
Status : Modified
Published: 2024-02-01T18:15:53.823
Modified: 2026-06-17T07:13:17.860
Link: CVE-2024-23645
No data.
OpenCVE Enrichment
No data.
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
EUVD