Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, admin pages are cached, so that their content is visible after deconnection by using the browser back button. This is fixed in versions 2.7.2 and 3.0.0.
References
Link | Resource |
---|---|
https://github.com/Combodo/iTop/security/advisories/GHSA-3m3g-86hp-5p2j | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2021-01-13 17:15
Updated : 2024-02-04 21:23
NVD link : CVE-2020-15218
Mitre link : CVE-2020-15218
CVE.ORG link : CVE-2020-15218
JSON object : View
Products Affected
combodo
- itop
CWE
CWE-613
Insufficient Session Expiration