combodo Latest High & Critical Vulnerabilities
Latest High & Critical vulnerabilities published by combodo
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Remote Code Execution Vulnerability in iTop by Combodo
CVE-2025-24022CombodoItop8.6HIGHCross-Site Request Forgery Vulnerability in Combodo iTop Prior to Versions 2.7.11, 3.1.2, and 3.2.0
CVE-2024-54139CombodoItop9.6CRITICALiTop CSRF Vulnerability Affects Several URL Endpoints
CVE-2024-52002CombodoItopπΎπ‘8.8HIGHiTop Vulnerability: HTTP Requests from Low-Privileged Users
CVE-2024-51740CombodoItop8.8HIGHCSV Import Vulnerability Affects iTop, Upgrade to 3.1.2 or 3.2.0 Advised
CVE-2024-31998CombodoItop8.8HIGHiTop Platform Vulnerability Affects Restricted Access Files
CVE-2023-48710CombodoItop9.8CRITICALiTop Platform Vulnerability: Malicious Formulas in CSV/Excel Exports May Lead to Remote Code Execution
CVE-2023-48709CombodoItop8HIGHLocal Code Execution Vulnerability in Combodo iTop by Combodo
CVE-2023-47489CombodoItopπΎπ‘7.8HIGHiTop XSS vulnerability on pages/preferences.php
CVE-2023-34446CombodoItop8.8HIGHiTop XSS vulnerability on pages/UI.php
CVE-2023-34447CombodoItop8.8HIGHCombodo iTop's weak password reset token leads to account takeover
CVE-2022-39216CombodoItop7.4HIGHAuthenticated users of Combodo iTop can take over any account
CVE-2022-39214CombodoItop9.6CRITICALCross-site Scripting in Combodo iTop
CVE-2021-41162CombodoItop9.3CRITICALStored Cross-site Scripting in Combodo iTop
CVE-2022-24870CombodoItop8.7HIGHXSS in csvimport in 3.0.0-beta versions
CVE-2021-41161CombodoItop9.3CRITICALCode Injection in Combodo iTop
CVE-2022-24780CombodoItopπΎπ‘EPSS 16%8.8HIGHReflected XSS in Combodo/iTop
CVE-2021-32664CombodoItop8.1HIGHUnauthorized setup leads to SSRF in Combodo/iTop
CVE-2021-32663CombodoItop8.7HIGHAny user can see any fields (including mailbox password) with GroupBy Dashlet
CVE-2021-32775CombodoItop7.7HIGHPortal : the CSRF token isn't validated
CVE-2021-21407CombodoItop8HIGHInformation disclosure vulnerability in iTop
CVE-2020-4079CombodoItop7.7HIGHCombodo iTop - Broken Access Control
CVE-2020-12777CombodoItop7.5HIGHCombodo iTop - Reflected XSS
CVE-2020-12778CombodoItop7.4HIGHCombodo iTop - Security Misconfiguration
CVE-2020-12780CombodoItop7.5HIGHPrivilege Escalation in Combodo iTop Web Application
CVE-2019-19821CombodoItop8.1HIGH