CVE Vulnerabilities

CVE-2020-23996

Published: May 13, 2021 | Modified: May 21, 2021
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

A local file inclusion vulnerability in ILIAS before 5.3.19, 5.4.10 and 6.0 allows remote authenticated attackers to execute arbitrary code via the import of personal data.

Affected Software

Name Vendor Start Version End Version
Ilias Ilias * 5.3.19 (excluding)
Ilias Ilias 5.4.0 (including) 5.4.10 (excluding)

References