A flaw has been found in ILIAS up to 8.23/9.13/10.1. Affected by this issue is the function unserialize of the component Test Import. This manipulation causes deserialization. It is possible to initiate the attack remotely. Upgrading to version 8.24, 9.14 and 10.2 can resolve this issue. Upgrading the affected component is advised.
References
Configurations
No configuration.
History
06 Oct 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-10-06 19:15
Updated : 2025-10-08 19:38
NVD link : CVE-2025-11345
Mitre link : CVE-2025-11345
CVE.ORG link : CVE-2025-11345
JSON object : View
Products Affected
No product.