Vulnerability Details
Basic Information
| Title | CVE-2025-24021 |
|---|---|
| Type | cve |
| Published | 2025-05-14T15:15:56 |
| Last Seen | 2025-05-14T15:26:10 |
| CVSS Score | 5.0 (MEDIUM) |
CVSS v3 Details
| Attack Vector | NETWORK |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | LOW |
| User Interaction | NONE |
| Scope | CHANGED |
| Confidentiality Impact | NONE |
| Integrity Impact | LOW |
| Availability Impact | NONE |
CVE Information
| CVE IDs | CVE-2025-24021 |
|---|---|
| CWE | CWE-862 |
| Bulletin Family | cve |
Description
iTop is an web based IT Service Management tool. Prior to versions 2.7.12, 3.1.3, and 3.2.1, anyone with an account having portal access can set value to object fields when they're not supposed to. Versions 2.7.12, 3.1.3, and…
Impact Assessment
| Base Score | 5.0 |
|---|---|
| Severity | MEDIUM |