CVE-2023-47622

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
15/04/2024
Last modified:
06/02/2025

Description

iTop is an IT service management platform. When dashlet are refreshed, XSS attacks are possible. This vulnerability is fixed in 3.0.4 and 3.1.1.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:combodo:itop:*:*:*:*:*:*:*:* 3.0.4 (excluding)
cpe:2.3:a:combodo:itop:*:*:*:*:*:*:*:* 3.1.0 (including) 3.1.1 (excluding)