CVE-2022-45915: Command Injection
Published Dec 7, 2022
·Updated
ILIAS before 7.16 allows OS Command Injection.
Affected Software
1 affected component
ILIAS ILIAS<7.16
Event History
Dec 7, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-45915?
CVE-2022-45915 is a vulnerability in ILIAS before version 7.16 that allows OS command injection.
2
How severe is CVE-2022-45915?
CVE-2022-45915 has a severity rating of 8.8 (high).
3
What is the affected software?
ILIAS versions up to (but not including) 7.16 are affected by CVE-2022-45915.
4
How can I fix CVE-2022-45915?
To fix CVE-2022-45915, it is recommended to update ILIAS to version 7.16 or higher.
5
Where can I find more information about CVE-2022-45915?
You can find more information about CVE-2022-45915 at the following references: [Link 1](http://packetstormsecurity.com/files/170181/ILIAS-eLearning-7.15-Command-Injection-XSS-LFI-Open-Redirect.html), [Link 2](http://seclists.org/fulldisclosure/2022/Dec/7), [Link 3](https://sec-consult.com/vulnerability-lab/advisory/multiple-critical-vulnerabilities-in-ilias-elearning-platform/)