Skip to content

Known CVE

Chamilo LMS <= v1.11.20 Unauthenticated Command Injection

Command injection in `/main/webservices/additional_webservices.php` in Chamilo LMS <= v1.11.20 allows unauthenticated attackers to obtain remote code execution via improper neutralisation of special characters.

CVE-2023-3368

Critical2023CVSS 9.8CWE-78

cve2023 · chamilo · unauth · cmd · rce · vkev · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website