Combodo iTop does not validate inputted parameters, attackers can inject malicious commands and launch XSS attack.