CVE-2024-28198
HIGH EPSS 34.5%
Published Mar 11, 20242y ago · Modified Jun 17, 20262w ago
7.5 CVSS 3.1
Published Mar 11, 2024 2y ago
Last Modified Jun 17, 2026 2w ago
Description
OpenOlat is an open source web-based e-learning platform for teaching, learning, assessment and communication. By manually manipulating http requests when using the draw.io integration it is possible to read arbitrary files as the configured system user and SSRF. The problem is fixed in version 18.1.6 and 18.2.2. It is advised to upgrade to the latest version of 18.1.x or 18.2.x. Users unable to upgrade may work around this issue by disabling the Draw.io module or the entire REST API which will secure the system.
CVSS Details
Base Score
Exploitability
Impact
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N Attack Vector Network
Attack Complexity Low
Privileges Required None
User Interaction None
Scope Unchanged
Confidentiality High
Integrity None
Availability None
Threat Intelligence
EPSS Exploit Probability
34.5% percentile
Exploit & Patch Status
No Known Exploit
Patch Available
Weaknesses 1
CWE-611
Affected Products 1
| Vendor | Product | Version | Range |
|---|---|---|---|
| frentix | openolat | * | <18.1.6 |
References 3
- github.com https://github.com/OpenOLAT/OpenOLAT/commit/23e6212e9412c3b099436159b8c8935321c91872
- github.com https://github.com/OpenOLAT/OpenOLAT/security/advisories/GHSA-pqvm-h9mg-434c
- track.frentix.com https://track.frentix.com/issue/OO-7553/XXE-injection-in-draw.io-endpoint
Remediation
- github.com https://github.com/OpenOLAT/OpenOLAT/commit/23e6212e9412c3b099436159b8c8935321c91872