Vulnerability Database
Blog
FAQ
Docs
CVE-2023-36488
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2023-36488
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-36488.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-36488
Published
2023-06-29T17:15:09Z
Modified
2025-02-18T20:43:37Z
Severity
5.4 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
CVSS Calculator
Summary
[none]
Details
ILIAS 7.21 and 8.0_beta1 through 8.2 is vulnerable to stored Cross Site Scripting (XSS).
References
https://docu.ilias.de/ilias.php?ref_id=1719&obj_id=141704&obj_type=PageObject&cmd=layout&cmdClass=illmpresentationgui&cmdNode=13g&baseClass=ilLMPresentationGUI
https://docu.ilias.de/ilias.php?ref_id=1719&obj_id=141710&obj_type=PageObject&cmd=layout&cmdClass=illmpresentationgui&cmdNode=13g&baseClass=ilLMPresentationGUI
Affected packages
Git
/
github.com/ilias-elearning/ilias
Affected ranges
Type
GIT
Repo
https://github.com/ilias-elearning/ilias
Events
Introduced
8ae8387e9d7f958cf88a9dd37fd542195a473dd1
Last affected
bce87f5e94931a09e31e375f8523a858a9a25bb0
Last affected
c95bd654f986f13717e265e4e20029425752ca4f
CVE-2023-36488 - OSV