ILIAS 在 9.22 之前的版本、10.0 至 10.9 版本,以及 11.0 至 11.2 版本中,其 SOAP 方法中存在一个任意文件读取漏洞。经过认证的用户可以通过提供经过构造的 XML(使用 COPY 模式导入),读取服务器上的文件。攻击者可以利用未加沙箱限制的导入目录来构造绝对文件路径,从而获取敏感文件,包括包含数据库凭据和安装密码的配置文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ILIAS-eLearning e.V. | ILIAS | 0 ~ 9.22 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet