{"id":"CVE-2020-15219","details":"Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, when a download error is triggered in the user portal, an SQL query is displayed to the user. This is fixed in versions 2.7.2 and 3.0.0.","modified":"2026-04-10T04:22:50.700265Z","published":"2021-01-13T17:15:12.570Z","related":["GHSA-q5cf-46rg-frf8"],"references":[{"type":"ADVISORY","url":"https://github.com/Combodo/iTop/security/advisories/GHSA-q5cf-46rg-frf8"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/combodo/itop","events":[{"introduced":"0"},{"fixed":"97d322a0594abfd85aab946171693fafdd081aab"},{"introduced":"0"},{"last_affected":"fc24746862778d60fd135c076aa1d621a723f965"}],"database_specific":{"versions":[{"introduced":"0"},{"fixed":"2.7.2"},{"introduced":"0"},{"last_affected":"3.0.0-alpha"}]}}],"versions":["2.6.1","2.6.2","2.6.3","2.7.0-alpha1","2.7.0-beta","2.7.0-beta2","2.7.1","3.0.0-alpha","N1963","N2011","N2016","N941","N941-2"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-15219.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N"}]}