CVE-2017-11184: SQL Injection
Published Jul 28, 2017
·Updated
SQL injection exists in front/devicesoundcard.php in GLPI before 9.1.5 via the start parameter.
Affected Software
1 affected component
GLPI-PROJECT GLPI<=9.1.4
Event History
Jul 28, 2017
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-11184?
CVE-2017-11184 is classified as a medium severity vulnerability.
2
How do I fix CVE-2017-11184?
To fix CVE-2017-11184, upgrade GLPI to version 9.1.5 or later.
3
What type of vulnerability is CVE-2017-11184?
CVE-2017-11184 is an SQL injection vulnerability.
4
Which versions of GLPI are affected by CVE-2017-11184?
GLPI versions prior to 9.1.5, specifically up to 9.1.4, are affected by CVE-2017-11184.
5
What component of GLPI does CVE-2017-11184 affect?
CVE-2017-11184 affects the front/devicesoundcard.php component of GLPI.