Combodo iTop
cpe:2.3:a:combodo:itop:*:*:*:*:*:*:*
- < 2.7.12
- < 3.1.3
- < 3.2.1
A mass assignment vulnerability has been identified in iTop, a web-based IT Service Management tool. This issue affects versions prior to 2.7.12, 3.1.3, and 3.2.1. The vulnerability allows users with portal access to modify object fields that they should not have permission to change.
Exploitation of this vulnerability allows for unauthorized modification of object fields by users with portal access.
Users can upgrade to iTop versions 2.7.12, 3.1.3, or 3.2.1 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.