CVE-2021-32663
iTop is an open source web based IT Service Management tool. In affected versions an attacker can call the system setup without authentication. Given specific parameters this can lead to SSRF. This issue has been resolved in versions 2.6.5 and 2.7.5 and later
- Combodo Itop
- < 2.6.5, 2.7.5
- Fix
- Available
- CVSS 3.1
- 8.7 HIGH
- EPSS
- 1.4% (70th percentile)
- Weakness
- CWE-918
- NVD status
- Modified
- Published
- 2021-10-19
CVE-2021-32663 at NVD
No indexed exploits for CVE-2021-32663 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2021-32663 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.