Comodo · Itop · CVE-2020-11696
**Name of the Vulnerable Software and Affected Versions**
iTop versions prior to 2.6.4
iTop versions prior to 2.7.0
**Description**
The issue concerns a stored XSS payload that can be exploited through a menu shortcut name in iTop.
**Recommendations**
For versions prior to 2.6.4, update to version 2.6.4 or later.
For versions prior to 2.7.0, update to version 2.7.0 or later.