Molkobain
4 exploits
Active since Apr 2022
Combodo iTop < 2.7.6 - Cross-Site Scripting in HTML Attachment Display
CVSS 5.4
Combodo iTop 3.0.0 beta - Authenticated Stored Cross-Site Scripting via Tooltip Customization
CVSS 8.7
iTop 3.1.0 - Stored Cross-Site Scripting via Object Friendlyname/Complementary Name
CVSS 8.7
iTop < 2.7.10 - Unauthenticated Arbitrary File Read via env-production Folder
CVSS 9.8