← voltar
CVE-2022-24811

Cross-site Scripting in Combodo iTop

CVSS 5.4 MEDIUMEPSS 0.7%CWE-79
Combodi iTop is a web based IT Service Management tool. Prior to versions 2.7.6 and 3.0.0, cross-site scripting is possible for scripts outside of script tags when displaying HTML attachments. This issue is fixed in versions 2.7.6 and 3.0.0. There are currently no known workarounds.
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Produtos afetados
Combodo · iTop

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →