← Back

CVE-2025-24969

nvd nist
Published: May 14, 2025Modified: Aug 5, 2025

JSON object

Loading...
5.0
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
Exploitability: 3.1 / Impact: 1.4
Source: security-advisories@github.com (Secondary)

Description

iTop is an web based IT Service Management tool. Prior to version 3.2.1, a portal user can see any other contacts picture by changing the picture ID in the URL. Version 3.2.1 contains a patch for the issue.

Affected (1)

Products: Combodo: Itop
1 product
Itop
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 3.2.1

References (1)

Source: security-advisories@github.com
Vendor Advisory

Timeline

No history available yet.