CVE-2022-45918: Medium severity ilias vulnerability
Published Dec 7, 2022
·Updated
ILIAS before 7.16 allows External Control of File Name or Path.
Affected Software
1 affected component
ILIAS ILIAS<7.16
Event History
Dec 7, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-45918?
CVE-2022-45918 is a vulnerability in ILIAS before 7.16 that allows external control of file name or path.
2
What is the severity of CVE-2022-45918?
The severity of CVE-2022-45918 is medium (6.5).
3
How does CVE-2022-45918 affect ILIAS?
CVE-2022-45918 affects ILIAS versions up to exclusive 7.16.
4
How can I fix CVE-2022-45918?
To fix CVE-2022-45918, upgrade your ILIAS installation to version 7.16 or later.
5
Where can I find more information about CVE-2022-45918?
You can find more information about CVE-2022-45918 at the following references: [link1](http://packetstormsecurity.com/files/170181/ILIAS-eLearning-7.15-Command-Injection-XSS-LFI-Open-Redirect.html), [link2](http://seclists.org/fulldisclosure/2022/Dec/7), [link3](https://sec-consult.com/vulnerability-lab/advisory/multiple-critical-vulnerabilities-in-ilias-elearning-platform/).