Security Advisory
CVE-2022-31266
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
In ILIAS through 7.10, lack of verification when changing an email address (on the Profile Page) allows remote attackers to take over accounts.