CVE-2024-33529: Ilias
High severity, CVSS 7.2. EPSS: 0.9% chance of exploitation in the next 30 days.
ILIAS 7 before 7.30 and ILIAS 8 before 8.11 as well as ILIAS 9.0 allow remote authenticated attackers with administrative privileges to execute operating system commands via file uploads with dangerous types.
Affected products
- Ilias Ilias: from 7.0, before 7.30 (fixed in 7.30); from 8.0, before 8.11 (fixed in 8.11); version 9.0 only
Published 2024-05-21. Last modified 2026-06-17.