CVE-2026-33333
LOW
3,5
Source: [email protected]
Attack Vector: network
Attack Complexity: low
Privileges Required: low
User Interaction: required
Scope: unchanged
Confidentiality: low
Integrity: none
Availability: none
Description
AI Translation Available
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, there is sensitive information disclosure in the error messages. This issue has been fixed in version 3.2.3.
209
Generation of Error Message Containing Sensitive Information
DraftCommon Consequences
Security Scopes Affected:
Confidentiality
Potential Impacts:
Read Application Data
Applicable Platforms
Languages:
PHP, Java, Not Language-Specific
https://github.com/Combodo/iTop/commit/170014e8f0a01fb8f8581902c665ff5c1fcc1168
https://github.com/Combodo/iTop/security/advisories/GHSA-ghr8-5898-6rjh