Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-39216

Combodo iTop is an open source, web-based IT service management platform. Prior to versions 2.7.8 and 3.0.2-1, the reset password token is generated without any randomness parameter. This may lead to account takeover. The issue is fixed in versions 2.7.8 and 3.0.2-1.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 46.0%
CVSS Severity
CVSS v3 Score 7.4
Products affected by CVE-2022-39216
  • Combodo » Itop » Version: 2.0.3
    cpe:2.3:a:combodo:itop:2.0.3
  • Combodo » Itop » Version: 2.1.0
    cpe:2.3:a:combodo:itop:2.1.0
  • Combodo » Itop » Version: 2.2.0
    cpe:2.3:a:combodo:itop:2.2.0
  • Combodo » Itop » Version: 2.2.1
    cpe:2.3:a:combodo:itop:2.2.1
  • Combodo » Itop » Version: 2.3.0
    cpe:2.3:a:combodo:itop:2.3.0
  • Combodo » Itop » Version: 2.3.1
    cpe:2.3:a:combodo:itop:2.3.1
  • Combodo » Itop » Version: 2.3.2
    cpe:2.3:a:combodo:itop:2.3.2
  • Combodo » Itop » Version: 2.3.3
    cpe:2.3:a:combodo:itop:2.3.3
  • Combodo » Itop » Version: 2.3.4
    cpe:2.3:a:combodo:itop:2.3.4
  • Combodo » Itop » Version: 2.4.0
    cpe:2.3:a:combodo:itop:2.4.0
  • Combodo » Itop » Version: 2.4.1
    cpe:2.3:a:combodo:itop:2.4.1
  • Combodo » Itop » Version: 2.4.2
    cpe:2.3:a:combodo:itop:2.4.2
  • Combodo » Itop » Version: 2.4.3
    cpe:2.3:a:combodo:itop:2.4.3
  • Combodo » Itop » Version: 2.5.0
    cpe:2.3:a:combodo:itop:2.5.0
  • Combodo » Itop » Version: 2.5.1
    cpe:2.3:a:combodo:itop:2.5.1
  • Combodo » Itop » Version: 2.6.0
    cpe:2.3:a:combodo:itop:2.6.0
  • Combodo » Itop » Version: 2.6.1
    cpe:2.3:a:combodo:itop:2.6.1
  • Combodo » Itop » Version: 2.6.3
    cpe:2.3:a:combodo:itop:2.6.3
  • Combodo » Itop » Version: 2.6.4
    cpe:2.3:a:combodo:itop:2.6.4
  • Combodo » Itop » Version: 2.7
    cpe:2.3:a:combodo:itop:2.7
  • Combodo » Itop » Version: 2.7.0
    cpe:2.3:a:combodo:itop:2.7.0
  • Combodo » Itop » Version: 2.7.0-1
    cpe:2.3:a:combodo:itop:2.7.0-1
  • Combodo » Itop » Version: 2.7.0-2
    cpe:2.3:a:combodo:itop:2.7.0-2
  • Combodo » Itop » Version: 2.7.1
    cpe:2.3:a:combodo:itop:2.7.1
  • Combodo » Itop » Version: 2.7.2
    cpe:2.3:a:combodo:itop:2.7.2
  • Combodo » Itop » Version: 2.7.2-1
    cpe:2.3:a:combodo:itop:2.7.2-1
  • Combodo » Itop » Version: 2.7.3
    cpe:2.3:a:combodo:itop:2.7.3
  • Combodo » Itop » Version: 2.7.3-1
    cpe:2.3:a:combodo:itop:2.7.3-1
  • Combodo » Itop » Version: 2.7.3-2
    cpe:2.3:a:combodo:itop:2.7.3-2
  • Combodo » Itop » Version: 2.7.4
    cpe:2.3:a:combodo:itop:2.7.4
  • Combodo » Itop » Version: 2.7.5
    cpe:2.3:a:combodo:itop:2.7.5
  • Combodo » Itop » Version: 2.7.5-1
    cpe:2.3:a:combodo:itop:2.7.5-1
  • Combodo » Itop » Version: 2.7.5-2
    cpe:2.3:a:combodo:itop:2.7.5-2
  • Combodo » Itop » Version: 2.7.6
    cpe:2.3:a:combodo:itop:2.7.6
  • Combodo » Itop » Version: 2.7.7
    cpe:2.3:a:combodo:itop:2.7.7
  • Combodo » Itop » Version: 3.0.1
    cpe:2.3:a:combodo:itop:3.0.1
  • Combodo » Itop » Version: 3.0.2
    cpe:2.3:a:combodo:itop:3.0.2


Contact Us

Shodan ® - All rights reserved