iTop is an web based IT Service Management tool. Prior to version 3.2.1, a portal user can see any other contacts picture by changing the picture ID in the URL. Version 3.2.1 contains a patch for the issue.
Metrics
Affected Vendors & Products
References
History
Tue, 05 Aug 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:combodo:itop:*:*:*:*:*:*:*:* |
Wed, 14 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 14 May 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | iTop is an web based IT Service Management tool. Prior to version 3.2.1, a portal user can see any other contacts picture by changing the picture ID in the URL. Version 3.2.1 contains a patch for the issue. | |
| Title | iTop portal user can see any other contact's picture | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published: 2025-05-14T15:11:45.247Z
Updated: 2025-05-14T15:45:51.476Z
Reserved: 2025-01-29T15:18:03.209Z
Link: CVE-2025-24969
Updated: 2025-05-14T15:45:48.794Z
Status : Analyzed
Published: 2025-05-14T16:15:27.300
Modified: 2025-08-05T20:49:48.897
Link: CVE-2025-24969
No data.
ReportizFlow