CVE-2017-7583: XSS
Published Apr 7, 2017
·Updated
ILIAS before 5.2.3 has XSS via SVG documents.
Affected Software
1 affected component
ILIAS ILIAS<=5.2.2
Remediation
Event History
Apr 7, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
via NVD·07:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-7583?
CVE-2017-7583 is classified as a moderate severity vulnerability due to its potential for XSS attacks.
2
How do I fix CVE-2017-7583?
To fix CVE-2017-7583, upgrade ILIAS to version 5.2.3 or later.
3
What types of attacks are possible with CVE-2017-7583?
CVE-2017-7583 allows for cross-site scripting (XSS) attacks via SVG documents.
4
Which versions of ILIAS are affected by CVE-2017-7583?
Versions of ILIAS prior to 5.2.3, specifically up to 5.2.2, are affected by CVE-2017-7583.
5
Is there a known exploit for CVE-2017-7583?
Yes, CVE-2017-7583 has been documented to allow exploitation through XSS vectors targeting SVG files.