Vulnerabilities > Itarian

DATE CVE VULNERABILITY TITLE RISK
2022-06-09 CVE-2022-25151 Incorrect Permission Assignment for Critical Resource vulnerability in Itarian On-Premise and Saas Service Desk
Within the Service Desk module of the ITarian platform (SAAS and on-premise), a remote attacker can obtain sensitive information, caused by the failure to set the HTTP Only flag.
network
low complexity
itarian CWE-732
7.5
2022-06-09 CVE-2022-25152 Unspecified vulnerability in Itarian On-Premise and Saas Service Desk
The ITarian platform (SAAS / on-premise) offers the possibility to run code on agents via a function called procedures.
network
low complexity
itarian
8.8
2022-06-09 CVE-2022-25153 Unspecified vulnerability in Itarian Endpoint Manager Communication Client 6.43.41148.21120
The ITarian Endpoint Manage Communication Client, prior to version 6.43.41148.21120, is compiled using insecure OpenSSL settings.
local
low complexity
itarian
7.8