CVE-2020-15218

Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, admin pages are cached, so that their content is visible after deconnection by using the browser back button. This is fixed in versions 2.7.2 and 3.0.0.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:combodo:itop:*:*:*:*:*:*:*:*
cpe:2.3:a:combodo:itop:3.0.0:alpha:*:*:*:*:*:*

History

21 Nov 2024, 05:05

Type Values Removed Values Added
References () https://github.com/Combodo/iTop/security/advisories/GHSA-3m3g-86hp-5p2j - Third Party Advisory () https://github.com/Combodo/iTop/security/advisories/GHSA-3m3g-86hp-5p2j - Third Party Advisory

Information

Published : 2021-01-13 17:15

Updated : 2024-11-21 05:05


NVD link : CVE-2020-15218

Mitre link : CVE-2020-15218

CVE.ORG link : CVE-2020-15218


JSON object : View

Products Affected

combodo

  • itop
CWE
CWE-613

Insufficient Session Expiration