PT-2024-24926 · Comodo+1 · Itop+1

Worty-Syn

·

Published

2024-11-04

·

Updated

2025-04-24

·

CVE-2024-32870

CVSS v3.1

5.8

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Combodo iTop versions prior to 2.7.11 Combodo iTop versions prior to 3.0.5 Combodo iTop versions prior to 3.1.2 Combodo iTop versions prior to 3.2.0
Description Combodo iTop is a simple, web-based IT Service Management tool. The issue allows anyone having access to the iTop URI to read server, OS, DBMS, PHP, and iTop information, including name, version, and parameters.
Recommendations For versions prior to 2.7.11, upgrade to version 2.7.11 or later. For versions prior to 3.0.5, upgrade to version 3.0.5 or later. For versions prior to 3.1.2, upgrade to version 3.1.2 or later. For versions prior to 3.2.0, upgrade to version 3.2.0 or later.

Exploit

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

ALT-PU-2025-4212
CVE-2024-32870
GHSA-RFJH-2F5X-QXMX

Affected Products

Alt Linux
Itop