ILIAS 7.24

CPE Details

ILIAS 7.24
7.24
2023-11-26
23h35 +00:00
2023-11-26
23h35 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:ilias:ilias:7.24:*:*:*:*:*:*:*

Informations

Vendor

ilias

Product

ilias

Version

7.24

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-33527 2024-05-21 15h01 +00:00 A Stored Cross-site Scripting (XSS) vulnerability in the "Import of Users and login name of user" feature in ILIAS 7 before 7.30 and ILIAS 8 before 8.11 allows remote authenticated attackers with administrative privileges to inject arbitrary web script or HTML via XML file upload.
5.4
Medium
CVE-2024-33526 2024-05-21 14h52 +00:00 A Stored Cross-site Scripting (XSS) vulnerability in the "Import of user role and title of user role" feature in ILIAS 7 before 7.30 and ILIAS 8 before 8.11 allows remote authenticated attackers with administrative privileges to inject arbitrary web script or HTML via XML file upload.
7.1
High
CVE-2024-33529 2024-05-21 14h46 +00:00 ILIAS 7 before 7.30 and ILIAS 8 before 8.11 as well as ILIAS 9.0 allow remote authenticated attackers with administrative privileges to execute operating system commands via file uploads with dangerous types.
7.2
High
CVE-2024-33528 2024-05-21 14h44 +00:00 A Stored Cross-site Scripting (XSS) vulnerability in ILIAS 7 before 7.30 and ILIAS 8 before 8.11 allows remote authenticated attackers with tutor privileges to inject arbitrary web script or HTML via XML file upload.
4.7
Medium