CVE-2019-12530: GLPI Dashboard Project GLPI Dashboard
Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.
Incorrect access control was discovered in the stdonato Dashboard plugin through 0.9.7 for GLPI, affecting df.php, issue.php, load.php, mem.php, traf.php, and uptime.php in front/sh.
Affected products
- GLPI Dashboard Project GLPI Dashboard: up to and including 0.9.7
Published 2019-06-02. Last modified 2026-06-17.