Vulnerability Description
ILIAS Learning Management System 4.3 contains a server-side request forgery vulnerability that allows attackers to read local files through portfolio PDF export functionality. Attackers can inject a script that uses XMLHttpRequest to retrieve local file contents when the portfolio is exported to PDF.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ilias | Ilias | >= 4.3.0, <= 5.1.0 |
Related Weaknesses (CWE)
References
- https://github.com/ILIAS-eLearning/ILIASProduct
- https://www.exploit-db.com/exploits/49148ExploitThird Party Advisory
- https://www.ilias.de/Product
- https://www.vulncheck.com/advisories/ilias-learning-management-system-ssrfThird Party Advisory
FAQ
What is CVE-2020-36944?
CVE-2020-36944 is a vulnerability with a CVSS score of 4.0 (MEDIUM). ILIAS Learning Management System 4.3 contains a server-side request forgery vulnerability that allows attackers to read local files through portfolio PDF export functionality. Attackers can inject a s...
How severe is CVE-2020-36944?
CVE-2020-36944 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-36944?
Check the references section above for vendor advisories and patch information. Affected products include: Ilias Ilias.