Stormshield SNS protection for CVE-2023-41321 and CVE-2023-41323 (GLPI)

The vulnerability, tracked as CVE-2023-41321 and CVE-41323 impacts GLPI Web servers. They allow an unauthenticated attacker to get user enumeration and retrieve sensitive information about them.

The Stormhield Network Security (SNS) appliance protects you from that attack, thanks to dedicated IPS signatures. To work efficiently on HTTPS traffic, the SSL proxy needs to be enabled.

IDName
http:url:decoded.418Exploitation of user enumeration vulnerability in GLPI (CVE-2023-41323)
http:url:decoded.419Exploitation of sensitive fields enumeration vulnerability in GLPI (CVE-2023-41321)