Security Advisory

CVE-2021-21406

5.8
MEDIUM

Vulnerability Description

Combodo iTop is an open source, web based IT Service Management tool. In versions prior to 2.7.4, there is a command injection vulnerability in the Setup Wizard when providing Graphviz executable path. The vulnerability is patched in version 2.7.4 and 3.0.0.
Published Date July 21, 2021
Official Source NIST NVD Advisory