CVE-2023-44396
iTop vulnerable to XSS in dashlet modifications ajax endpoints
iTop is an IT service management platform. Dashlet edits ajax endpoints can be used to produce XSS. Fixed in iTop 2.7.10, 3.0.4, and 3.1.1.
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N
Produtos afetados
Combodo · iTopQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →