Information Disclosure Vulnerability in ILIAS eLearning Platform
CVE-2020-23995
6.5MEDIUM
What is CVE-2020-23995?
An information disclosure issue in ILIAS prior to versions 5.3.19, 5.4.12, and 6.0 enables remote authenticated users to expose the upload data path by initiating a workspace upload. This vulnerability could lead to unauthorized access to potentially sensitive file paths, posing significant risks in a security-sensitive context.
