PT-2026-79497 · Comodo · Itop

CVE-2026-34949

·

Published

2026-08-21

·

Updated

2026-08-21

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Combodo iTop versions prior to 3.2.3
Description Combodo iTop is a web-based IT service management tool. An unauthenticated user can delete the .readonly file on instances of the software. This specific file is created during the setup process to prevent users from performing write actions.
Recommendations Update to version 3.2.3.

Exploit

Fix

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-34949
GHSA-2XH3-R27F-3PR5

Affected Products

Itop