Vulmon Recent Vulnerabilities Research Posts Trends Blog About Contact

itop vulnerabilities and exploits

(subscribe to this query)

6.1
CVSSv3
CVE-2019-13965
Because of a lack of sanitization around error messages, multiple Reflective XSS issues exist in iTop through 2.6.0 via the param_file parameter to webservices/export.php, webservices/cron.php, or env-production/itop-backup/backup.php. By default, any XSS sent to the...
Combodo Itop
7.2
CVSSv3
CVE-2018-10642
Command injection vulnerability in Combodo iTop 2.4.1 allows remote authenticated administrators to execute arbitrary commands by changing the platform configuration, because web/env-production/itop-config/config.php contains a function called TestConfig() that calls the...
Combodo Itop
8.1
CVSSv3
CVE-2021-41245
Combodo iTop is a web based IT Service Management tool. In versions prior to 2.7.6 and 3.0.0, CSRF tokens generated by `privUITransactionFile` aren't properly checked. Versions 2.7.6 and 3.0.0 contain a patch for this issue. As a workaround, use the session implementation...
Combodo Itop
5.4
CVSSv3
CVE-2022-24811
Combodi iTop is a web based IT Service Management tool. Prior to versions 2.7.6 and 3.0.0, cross-site scripting is possible for scripts outside of script tags when displaying HTML attachments. This issue is fixed in versions 2.7.6 and 3.0.0. There are currently no known...
Combodo Itop
7.5
CVSSv3
CVE-2020-12780
A security misconfiguration exists in Combodo iTop, which can expose sensitive information....
Combodo Itop
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-32034CVE-2022-2285IMAPCVE-2021-26855CVE-2022-32030CVE-2022-26763injectCVE-2022-32039SQL injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV 1234

Vulmon Search

Vulmon Search is a vulnerability search engine. It gives comprehensive vulnerability information through a very simple user interface.

About

Home Recent Vulnerabilities Research Posts Trends Blog About Contact

Products

Vulmon Search Vulmon Research Vulmon Alerts Vulmap

Connect

Twitter Reddit Linkedin Facebook