SQL injection vulnerability in repository.php in ILIAS 3.7.4 and earlier allows remote attackers to execute arbitrary SQL commands via the ref_id parameter.
| Software | From | Fixed in |
|---|---|---|
| ilias / ilias | 3.7.2 | 3.7.2.x |
| ilias / ilias | 3.7.3 | 3.7.3.x |
| ilias / ilias | - | 3.7.4.x |
| ilias / ilias | 3.7.1 | 3.7.1.x |
| ilias / ilias | 3.7.0 | 3.7.0.x |