{"id":"CVE-2018-7562","details":"A remote code execution issue was discovered in GLPI through 9.2.1. There is a race condition that allows temporary access to an uploaded executable file that will be disallowed. The application allows an authenticated user to upload a file when he/she creates a new ticket via front/fileupload.php. This feature is protected using different types of security features like the check on the file's extension. However, the application uploads and creates a file, though this file is not allowed, and then deletes the file in the uploadFiles method in inc/glpiuploaderhandler.class.php.","modified":"2026-08-07T14:49:44.136115Z","published":"2018-03-12T21:29:01.140Z","references":[{"type":"REPORT","url":"https://github.com/glpi-project/glpi/pull/3650"},{"type":"REPORT","url":"https://membership.backbox.org/glpi-9-2-1-multiple-vulnerabilities/"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/glpi-project/glpi","events":[{"introduced":"0"},{"last_affected":"3a7c5969c0534d0b5bf27fef9c4d96f56147ae66"}],"database_specific":{"cpe":"cpe:2.3:a:glpi-project:glpi:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"9.2.1"}],"source":"CPE_RANGE"}}],"versions":["9.2.1","9.2","9.2-RC2","9.2-RC1","9.1","9.1-RC2","9.1-RC1","0.90","0.90-RC2","0.90-RC1","0.90-beta2","0.90-beta1"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-7562.json"}}],"schema_version":"1.8.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}