← back
CVE-2020-15218

Admin pages are cached and can be embedded

CVSS 6.8 MEDIUMEPSS 0.8%CWE-613
Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, admin pages are cached, so that their content is visible after deconnection by using the browser back button. This is fixed in versions 2.7.2 and 3.0.0.
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N
Affected products
Combodo · iTop

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →