Home
MEDIUM: 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N < 2.9.11
affected
Description
Escalade GLPI plugin is a ticket escalation process helper for GLPI. Prior to version 2.9.11, there is an improper access control vulnerability. This can lead to data exposure and workflow disruptions. This issue has been patched in version 2.9.11.
Problem types
CWE-284: Improper Access Control
Product status
References
github.com/...calade/security/advisories/GHSA-pvqv-8r3r-47m9
github.com/pluginsGLPI/escalade/releases/tag/2.9.11