PT-2020-13260 · Comodo+1 · Itop+1

Tseng

+3

·

Published

2020-08-10

·

Updated

2024-04-04

·

CVE-2020-12778

CVSS v3.1

7.4

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Combodo iTop (affected versions not specified)
Description The issue concerns the lack of validation for inputted parameters, allowing attackers to inject malicious commands and initiate a cross-site scripting (XSS) attack. There is no information provided about the estimated number of potentially affected devices worldwide or details about real-world incidents where this issue was exploited.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

ALT-PU-2023-1879
ALT-PU-2024-4537
ALT-PU-2024-4547
ALT-PU-2024-4961
CVE-2020-12778
GHSA-8VPF-8VJH-5FCV

Affected Products

Alt Linux
Itop