Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2018-11120

Disclosure Date: May 17, 2018 (last updated November 26, 2024)
Services/COPage/classes/class.ilPCSourceCode.php in ILIAS 5.1.x, 5.2.x, and 5.3.x before 5.3.5 has XSS.
0
Attacker Value
Unknown

CVE-2018-11117

Disclosure Date: May 17, 2018 (last updated November 26, 2024)
Services/Feeds/classes/class.ilExternalFeedItem.php in ILIAS 5.1.x, 5.2.x, and 5.3.x before 5.3.5 has XSS via a link attribute.
0
Attacker Value
Unknown

CVE-2018-11118

Disclosure Date: May 17, 2018 (last updated November 26, 2024)
The RSS subsystem in ILIAS 5.1.x, 5.2.x, and 5.3.x before 5.3.5 has XSS via a URI to Services/Feeds/classes/class.ilExternalFeedItem.php.
0
Attacker Value
Unknown

CVE-2018-11119

Disclosure Date: May 17, 2018 (last updated November 26, 2024)
ILIAS 5.1.x, 5.2.x, and 5.3.x before 5.3.5 redirects a logged-in user to a third-party site via the return_to_url parameter.
0