Vulnerability CVE-2023-43790


Published: 2024-04-15   Modified: 2024-04-16

Description:
iTop is an IT service management platform. By manipulating HTTP queries, a user can inject malicious content in the fields used for the object friendlyname value. This vulnerability is fixed in 3.1.1 and 3.2.0.

 References:
https://github.com/Combodo/iTop/security/advisories/GHSA-96xm-p83r-hm97
https://github.com/Combodo/iTop/commit/03c9ffc0334fd44f3f0e82477264087064e1c732

Copyright 2024, cxsecurity.com

 

Back to Top