Critical severity9.8NVD Advisory· Published Jul 10, 2019· Updated Jun 17, 2026
CVE-2019-12723
CVE-2019-12723
Description
An issue was discovered in the Teclib Fields plugin through 1.9.2 for GLPI. it allows SQL Injection via container_id and old_order parameters to ajax/reorder.php by an unauthenticated user.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Teclib/Fields plugindescription
Patches
Vulnerability mechanics
References
3- github.com/pluginsGLPI/fields/blob/master/ajax/reorder.phpnvdThird Party Advisory
- github.com/pluginsGLPI/fields/pull/317nvdThird Party Advisory
- github.com/pluginsGLPI/fields/releases/tag/1.10.0nvdRelease NotesThird Party Advisory
News mentions
0No linked articles in our index yet.