CyberRota Analysis
AI-GeneratedThe dashboard revert functionality in Combodo iTop versions prior to 3.2.3 is susceptible to reflected cross-site scripting (XSS), allowing attackers to inject malicious scripts that could compromise user sessions or manipulate web content. Organizations using affected versions of iTop should prioritize upgrading to version 3.2.3 or later to mitigate the risk of exploitation. This vulnerability is particularly critical for IT service management environments where sensitive data and user interactions are prevalent.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Combodo iTop is a web-based IT service management tool. Prior to 3.2.3, iTop is vulnerable to Reflected Cross-Site Scripting (XSS) in the dashboard revert functionality. This issue has been fixed in version 3.2.3.