Critical severity9.8OSV Advisory· Published Mar 27, 2019· Updated Jun 17, 2026
CVE-2019-10231
CVE-2019-10231
Description
Teclib GLPI before 9.4.1.1 is affected by a PHP type juggling vulnerability allowing bypass of authentication. This occurs in Auth::checkPassword() (inc/auth.class.php).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
40.90, 0.90-RC1, 0.90-RC2, …+ 1 more
- (no CPE)range: 0.90, 0.90-RC1, 0.90-RC2, …
- (no CPE)range: <9.4.1.1
- cpe:2.3:a:teclib-edition:gestionnaire_libre_de_parc_informatique:*:*:*:*:*:*:*:*Range: <9.4.1.1
Patches
Vulnerability mechanics
References
2- github.com/glpi-project/glpi/pull/5520nvdPatchThird Party Advisory
- github.com/glpi-project/glpi/releases/tag/9.4.1.1nvdRelease NotesThird Party Advisory
News mentions
0No linked articles in our index yet.