Beveiligingsadvies

CVE-2024-52601

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-05-14 14:39:15
Laatst bijgewerkt 2025-05-14 14:49:38
Toegewezen door GitHub_M
CVSS-score 6.5
Status PUBLISHED

Beschrijving

iTop is an web based IT Service Management tool. Prior to versions 2.7.12, 3.1.3, and 3.2.1, anyone with an account having portal access can have read access to objects they're not allowed to see by querying an unprotected route. Versions 2.7.12, 3.1.3, and 3.2.1 contain a fix for the issue.