CNNVD-202510-768 Information

CNNVD ID

CNNVD-202510-768

CVE-2025-11344

  • CNNVD Published: 2025-10-06

Description (Chinese)

ILIAS是ILIAS开源的一套开源的学习管理系统。 ILIAS 8.23及之前版本、9.13及之前版本和10.1及之前版本存在代码注入漏洞,该漏洞源于证书导入处理程序存在缺陷,可能导致远程代码执行。

Description (English)

ILIAS is an open-source learning management system for ILIAS open sources. ILIAS 8.23 and previous versions, 9.13 and previous versions and 10.1 and previous versions have a code-injecting loophole, which arises from deficiencies in the certificate import processing process, which may lead to remote code execution.

Hazard Level

High

Vulnerability Type

代码注入

Affected Vendor

ILIAS

Published

2025-10-06

Last Modified

2026-02-24

References

https://docu.ilias.de/go/blog/15821/882 https://vuldb.com/?ctiid.327229 https://vuldb.com/?id.327229 https://vuldb.com/?submit.664889 https://access.redhat.com/security/cve/cve-2025-11344

Share on: