CVE-2020-25268: Ilias
High severity, CVSS 8.8. EPSS: 2.4% chance of exploitation in the next 30 days.
Remote Code Execution can occur via the external news feed in ILIAS 6.4 because of incorrect parameter sanitization for Magpie RSS data.
Affected products
- Ilias Ilias: version 6.4.0 only
Published 2020-11-10. Last modified 2026-06-17.