First published: Fri Jun 05 2020(Updated: )
In Combodo iTop, dashboard ids can be exploited with a reflective XSS payload. This is fixed in all iTop packages (community, essential, professional) for version 2.7.0 and in iTop essential and iTop professional packages for version 2.6.4.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Combodo iTop | <2.6.4 | |
Combodo iTop | <2.6.4 | |
Combodo iTop | <2.7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.