A security misconfiguration exists in Combodo iTop, which can expose sensitive information.
Solution:
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.
Link | Tags |
---|---|
https://www.twcert.org.tw/tw/cp-132-3836-47d6c-1.html | third party advisory |
https://github.com/Combodo/iTop/security/advisories/GHSA-97cw-cjxc-9x78 | third party advisory |