CVE-2022-31478 Information

Description

The UserTakeOver plugin before 4.0.1 for ILIAS allows an attacker to list all users via the search function.

Reference

https://medium.com/@bcksec/ilias-lms-usertakeover-4-0-1-vulnerability-b2824679403 https://github.com/srsolutionsag/UserTakeOver

Share on: