在 ILIAS 9.24 之前版本、10.x 版本中 10.12 之前版本以及 11.x 版本中 11.5 之前版本中,assImagemapQuestionGUI 组件存在一个参数注入漏洞,攻击者可通过上传的图片文件名注入 ImageMagick convert 命令的参数。攻击者可以嵌入制表符分隔的参数选项,这些选项未被 escapeshellcmd() 函数正确转义,从而导致能够在 Web 根目录下写入 PHP 文件,并最终实现远程代码执行(RCE)。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| ILIAS-eLearning e.V. | ILIAS | 9.0< 9.24 |
affected |
10.0< 10.12 |
affected | ||
11.0< 11.5 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ILIAS-eLearning e.V. | ILIAS | 9.0 ~ 9.24 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet