Vulnerability CVE-2023-43790: Information

Description

iTop is an IT service management platform. By manipulating HTTP queries, a user can inject malicious content in the fields used for the object friendlyname value. This vulnerability is fixed in 3.1.1 and 3.2.0.

Published: April 15, 2024
Modified: April 15, 2024

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
itopsisyphus3.1.1.1-alt13.1.1.1-alt1ALT-PU-2024-1028-1337677Fixed
itopsisyphus_e2k3.1.1.1-alt13.1.1.1-alt1ALT-PU-2024-1071-1-Fixed
itopsisyphus_mipsel3.1.1.1-alt13.1.1.1-alt1ALT-PU-2024-1552-1-Fixed
itopsisyphus_loongarch643.1.1.1-alt13.1.1.1-alt1ALT-PU-2024-1042-1-Fixed
itopp103.1.1.1-alt13.1.1.1-alt1ALT-PU-2024-4537-3343613Fixed
itopp10_e2k3.1.1.1-alt13.1.1.1-alt1ALT-PU-2024-4805-1-Fixed
itopc10f13.1.1.1-alt13.1.1.1-alt1ALT-PU-2024-4961-2343640Fixed
itopc9f23.1.1.1-alt13.1.1.1-alt1ALT-PU-2024-4547-3343621Fixed

References to Advisories, Solutions, and Tools