Combodo iTop is a simple, web based IT Service Management tool. Server, OS, DBMS, PHP, and iTop info (name, version and parameters) can be read by anyone having access to iTop URI. This issue has been patched in versions 2.7.11, 3.0.5, 3.1.2, and 3.2.0. Users are advised to upgrade. There are no known workarounds for this vulnerability.
References
Link | Resource |
---|---|
https://github.com/Combodo/iTop/security/advisories/GHSA-rfjh-2f5x-qxmx | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
13 Nov 2024, 01:07
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:combodo:itop:*:*:*:*:*:*:*:* | |
References | () https://github.com/Combodo/iTop/security/advisories/GHSA-rfjh-2f5x-qxmx - Vendor Advisory | |
First Time |
Combodo itop
Combodo |
|
CWE | NVD-CWE-noinfo |
05 Nov 2024, 16:04
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
05 Nov 2024, 00:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-11-05 00:15
Updated : 2024-11-13 01:07
NVD link : CVE-2024-32870
Mitre link : CVE-2024-32870
CVE.ORG link : CVE-2024-32870
JSON object : View
Products Affected
combodo
- itop
CWE