CVE-2021-43778

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
24/11/2021
Last modified:
08/09/2025

Description

Barcode is a GLPI plugin for printing barcodes and QR codes. GLPI instances version 2.x prior to version 2.6.1 with the barcode plugin installed are vulnerable to a path traversal vulnerability. This issue was patched in version 2.6.1. As a workaround, delete the `front/send.php` file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:glpi-project:barcode:*:*:*:*:*:*:*:* 2.0 (including) 2.6.1 (excluding)