CVE Vulnerabilities

CVE-2024-33527

Published: May 21, 2024 | Modified: May 23, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A Stored Cross-site Scripting (XSS) vulnerability in the Import of Users and login name of user feature in ILIAS 7 before 7.30 and ILIAS 8 before 8.11 allows remote authenticated attackers with administrative privileges to inject arbitrary web script or HTML via XML file upload.

References