Skip to content

Add module for Pre-auth SQL injection to RCE in GLPI (CVE-2025-24799/CVE-2025-24801) #19968

Open
@jheysel-r7

Description

@jheysel-r7

Summary

There exists a pre-auth SQL injection which allows an attacker to read an api_token from the database if one exists. This then gives the attacker the ability to exploit an authenticated RCE.

Basic example

https://blog.lexfo.fr/glpi-sql-to-rce.html

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

  • Status

    No status

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions