CVE-2020-15220
13.01.2021, 17:15
Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, two cookies are created for the same session, which leads to a possibility to steal user session. This is fixed in versions 2.7.2 and 3.0.0.Enginsight
Vendor | Product | Version |
---|---|---|
combodo | itop | 𝑥 < 2.7.2 |
combodo | itop | 3.0.0:alpha |
𝑥
= Vulnerable software versions
Common Weakness Enumeration