CVE-2022-31402: XSS
Published Jun 10, 2022
·Updated
ITOP v3.0.1 was discovered to contain a cross-site scripting (XSS) vulnerability via /itop/webservices/export-v2.php.
Affected Software
1 affected component
iTop=3.0.1
Event History
Jun 10, 2022
CVE Published
via MITRE·04:47 PM
Data Sourced
via MITRE·04:47 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-31402?
The severity of CVE-2022-31402 is medium with a CVSS score of 6.1.
2
How can I exploit CVE-2022-31402?
An attacker can exploit CVE-2022-31402 by injecting malicious scripts through the /itop/webservices/export-v2.php endpoint.
3
How do I fix CVE-2022-31402?
To fix CVE-2022-31402, users should update ITOP to a patched version that addresses the cross-site scripting vulnerability.