Exploitation Summary
EIP tracks 1 public exploit for CVE-2020-36944. PoCs published by Dot.
AI-analyzed exploit summary This exploit leverages an HTML injection vulnerability in ILIAS Learning Management System to perform SSRF via a crafted script hosted on an external server. The script uses XMLHttpRequest to fetch local files (e.g., /etc/passwd) when the portfolio is exported to PDF.
Description
ILIAS Learning Management System 4.3 contains a server-side request forgery vulnerability that allows attackers to read local files through portfolio PDF export functionality. Attackers can inject a script that uses XMLHttpRequest to retrieve local file contents when the portfolio is exported to PDF.
Exploits (1)
This exploit leverages an HTML injection vulnerability in ILIAS Learning Management System to perform SSRF via a crafted script hosted on an external server. The script uses XMLHttpRequest to fetch local files (e.g., /etc/passwd) when the portfolio is exported to PDF.
References (4)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N