PT-2020-12784 · Comodo+1 · Itop+1

Thenerdone

·

Published

2020-06-05

·

Updated

2024-04-04

·

CVE-2020-11697

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions iTop versions prior to 2.7.0 iTop essential and iTop professional versions prior to 2.6.4
Description The issue allows dashboard ids to be exploited with a reflective XSS payload.
Recommendations For versions prior to 2.7.0, update to version 2.7.0 or later. For iTop essential and iTop professional versions prior to 2.6.4, update to version 2.6.4 or later.

Fix

XSS

Weakness Enumeration

Related Identifiers

ALT-PU-2023-1879
ALT-PU-2024-4537
ALT-PU-2024-4547
ALT-PU-2024-4961
CVE-2020-11697
GHSA-XFH9-5632-HXMV

Affected Products

Alt Linux
Itop