iTop is an IT service management platform. Dashlet edits ajax endpoints can be used to produce XSS. Fixed in iTop 2.7.10, 3.0.4, and 3.1.1.
References
Configurations
Configuration 1 (hide)
|
History
06 Feb 2025, 20:56
Type | Values Removed | Values Added |
---|---|---|
First Time |
Combodo
Combodo itop |
|
CPE | cpe:2.3:a:combodo:itop:*:*:*:*:*:*:*:* | |
References | () https://github.com/Combodo/iTop/commit/9df92665e08c4bf5d4d8a5a9fe21fd3fb26fb273 - Patch | |
References | () https://github.com/Combodo/iTop/commit/c72cb7e70ebf469ce0ec01f5f9b524e39afe6c7f - Patch | |
References | () https://github.com/Combodo/iTop/security/advisories/GHSA-gqqj-jgh6-3x35 - Vendor Advisory |
21 Nov 2024, 08:25
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/Combodo/iTop/commit/9df92665e08c4bf5d4d8a5a9fe21fd3fb26fb273 - | |
References | () https://github.com/Combodo/iTop/commit/c72cb7e70ebf469ce0ec01f5f9b524e39afe6c7f - | |
References | () https://github.com/Combodo/iTop/security/advisories/GHSA-gqqj-jgh6-3x35 - | |
Summary |
|
15 Apr 2024, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-04-15 18:15
Updated : 2025-02-06 20:56
NVD link : CVE-2023-44396
Mitre link : CVE-2023-44396
CVE.ORG link : CVE-2023-44396
JSON object : View
Products Affected
combodo
- itop