CVE-2025-24969
—CVSS 3.1
5.0 medium
EPSS
<1%p19
Published
()
Modified
Description
iTop is an web based IT Service Management tool. Prior to version 3.2.1, a portal user can see any other contacts picture by changing the picture ID in the URL. Version 3.2.1 contains a patch for the issue.
- Vendors
- combodo
- Products
- itop
- Weakness
- CWE-639
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.