logo

Leakymetry: Circumventing GLPI Authentication

ID: b324f05d-7c3f-5d19-9af6-6202442760fc

STIX ID: report--b324f05d-7c3f-5d19-9af6-6202442760fc

Feed Name: SensePost Blog

Threat Score
70/100

Date Published: 2025-03-21

Date Updated: 2026-04-30

...
...

A vulnerability in GLPI (9.5.0–10.0.16) allows unauthenticated users to retrieve telemetry and an installation token, craft dashboard links, and inject SCSS that leverages scssphp's glob capability to list PHP session files in /files/_sessions/, enabling session hijacking and privilege escalation; a PoC tool (glpwnme), CVE-2024-50339, and a patched GLPI release (10.0.17) are documented.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.