ZeroHour

CVE-2023-44396

CVSS 3.1
5.4 medium
EPSS
<1%p35
Published
()
Modified
Description

iTop is an IT service management platform. Dashlet edits ajax endpoints can be used to produce XSS. Fixed in iTop 2.7.10, 3.0.4, and 3.1.1.

Vendors
combodo
Products
itop
Weakness
CWE-79, CWE-80
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.