No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 24 Aug 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Combodo
Combodo itop |
|
| Vendors & Products |
Combodo
Combodo itop |
Mon, 24 Aug 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 24 Aug 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Combodo iTop is a web-based IT service management tool. Prior to 3.2.3, unauthenticated users could delete the .readonly file on iTop instances, leading to code execution. This file, created during the setup process, prevents users from performing write actions. This issue has been fixed in version 3.2.3. | |
| Title | Combodo iTop: Remote code execution using external auth variable value | |
| Weaknesses | CWE-94 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-08-24T19:58:25.146Z
Reserved: 2026-04-08T00:01:47.628Z
Link: CVE-2026-39975
Updated: 2026-08-24T19:58:20.342Z
Status : Received
Published: 2026-08-24T19:16:38.470
Modified: 2026-08-24T20:16:43.667
Link: CVE-2026-39975
No data.
OpenCVE Enrichment
Updated: 2026-08-24T20:30:07Z