Логотип exploitDog
bind:CVE-2020-36944
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-36944

Количество 2

Количество 2

nvd логотип

CVE-2020-36944

11 дней назад

ILIAS Learning Management System 4.3 contains a server-side request forgery vulnerability that allows attackers to read local files through portfolio PDF export functionality. Attackers can inject a script that uses XMLHttpRequest to retrieve local file contents when the portfolio is exported to PDF.

CVSS3: 4
EPSS: Низкий
github логотип

GHSA-2rvg-p9mc-wr6c

11 дней назад

ILIAS Learning Management System 4.3 contains a server-side request forgery vulnerability that allows attackers to read local files through portfolio PDF export functionality. Attackers can inject a script that uses XMLHttpRequest to retrieve local file contents when the portfolio is exported to PDF.

CVSS3: 4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-36944

ILIAS Learning Management System 4.3 contains a server-side request forgery vulnerability that allows attackers to read local files through portfolio PDF export functionality. Attackers can inject a script that uses XMLHttpRequest to retrieve local file contents when the portfolio is exported to PDF.

CVSS3: 4
0%
Низкий
11 дней назад
github логотип
GHSA-2rvg-p9mc-wr6c

ILIAS Learning Management System 4.3 contains a server-side request forgery vulnerability that allows attackers to read local files through portfolio PDF export functionality. Attackers can inject a script that uses XMLHttpRequest to retrieve local file contents when the portfolio is exported to PDF.

CVSS3: 4
0%
Низкий
11 дней назад

Уязвимостей на страницу