PT-2024-13463 · Itop+1 · Itop+1

Molkobain

·

Published

2024-01-04

·

Updated

2025-03-14

·

CVE-2023-47626

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions iTop versions prior to 3.1.1
Description The issue concerns an IT service management platform where XSS attacks are possible when displaying or editing a user's personal tokens.
Recommendations For versions prior to 3.1.1, update to version 3.1.1 to resolve the issue.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2024-1028
ALT-PU-2024-4537
ALT-PU-2024-4547
ALT-PU-2024-4961
ALT-PU-2025-4212
CVE-2023-47626
GHSA-VV3V-9VRV-H95H

Affected Products

Alt Linux
Itop