Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, admin pages are cached, so that their content is visible after deconnection by using the browser back button. This is fixed in versions 2.7.2 and 3.0.0.
References
Link | Resource |
---|---|
https://github.com/Combodo/iTop/security/advisories/GHSA-3m3g-86hp-5p2j | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-01-13 09:15
Updated : 2021-01-15 07:14
NVD link : CVE-2020-15218
Mitre link : CVE-2020-15218
JSON object : View
CWE
CWE-613
Insufficient Session Expiration
Products Affected
combodo
- itop