Loading HuntDB...

combodo

1 Product 50 CVEs

CVE Severity Distribution (All Time)

Critical
4
High
28
Medium
17
Low
1

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 15 CVEs

Recent CVEs

View all
CVE-2024-54139 HIGH 7 months, 2 weeks ago

Combodo iTop is an open source and web-based IT service management platform. Prior to versions 2.7.11, 3.1.2, and 3.2.0., iTop has a cross-site scrip…

CVE-2024-52000 HIGH 8 months, 2 weeks ago

Combodo iTop is a simple, web based IT Service Management tool. Affected versions are subject to a reflected Cross-site Scripting (XSS) exploit by wa…

CVE-2024-52001 MEDIUM 8 months, 2 weeks ago

Combodo iTop is a simple, web based IT Service Management tool. In affected versions portal users are able to access forbidden services information. …

CVE-2024-52002 HIGH 8 months, 2 weeks ago

Combodo iTop is a simple, web based IT Service Management tool. Several url endpoints are subject to a Cross-Site Request Forgery (CSRF) vulnerabilit…

CVE-2024-51993 LOW 8 months, 3 weeks ago

Combodo iTop is a web based IT Service Management tool. An attacker accessing a backup file or the database can read some passwords for misconfigured…

CVE-2024-51994 HIGH 8 months, 3 weeks ago

Combodo iTop is a web based IT Service Management tool. In affected versions uploading a text file containing some java script in the portal will tri…

CVE-2024-51995 HIGH 8 months, 3 weeks ago

Combodo iTop is a web based IT Service Management tool. An attacker can request any `route` we want as long as we specify an `operation` that is allo…

CVE-2024-51740 MEDIUM 8 months, 3 weeks ago

Combodo iTop is a simple, web based IT Service Management tool. This vulnerability can be used to create HTTP requests on behalf of the server, from …

CVE-2024-51739 HIGH 8 months, 3 weeks ago

Combodo iTop is a simple, web based IT Service Management tool. Unauthenticated user can perform users enumeration, which can make it easier to brute…

CVE-2024-32870 MEDIUM 8 months, 3 weeks ago

Combodo iTop is a simple, web based IT Service Management tool. Server, OS, DBMS, PHP, and iTop info (name, version and parameters) can be read by an…