CVE-2022-24811
05.04.2022, 19:15
Combodi iTop is a web based IT Service Management tool. Prior to versions 2.7.6 and 3.0.0, cross-site scripting is possible for scripts outside of script tags when displaying HTML attachments. This issue is fixed in versions 2.7.6 and 3.0.0. There are currently no known workarounds.
Vendor | Product | Version |
---|---|---|
combodo | itop | 𝑥 < 2.7.6 |
𝑥
= Vulnerable software versions
References