#VU41597 Improper Privilege Management in iTop - CVE-2019-19821
Published: August 10, 2020
iTop
Combodo
Description
The vulnerability allows a remote user to escalate privileges within the application.
A post-authentication privilege escalation in the web application of Combodo iTop allows regular authenticated users to access information and modify information with administrative privileges by not following the HTTP Location header in server responses.