#VU25467 Resource management error in iTop - CVE-2019-13967
Published: February 19, 2020
iTop
Combodo
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to application is unable to handle multiple request to launch a compile operation. A remote attacker can send multiple request pages/exec.php?exec_env=production&exec_module=itop-hub-connector&exec_page=ajax.php&operation=compile URI and perform a denial of service attack.