Stored Cross Site Scripting Vulnerability in ILIAS by ILIAS GmbH
CVE-2023-36488
5.4MEDIUM
What is CVE-2023-36488?
ILIAS versions 7.21 and 8.0_beta1 through 8.2 are susceptible to a stored Cross Site Scripting (XSS) vulnerability. This flaw enables attackers to inject malicious scripts into web pages viewed by users, potentially leading to unauthorized actions being performed on behalf of the victims. A successful exploitation could result in data theft, session hijacking, or the spread of malware. It is crucial for organizations utilizing ILIAS to implement patches and reinforce security measures to safeguard their systems against these risks.
