Description
Incorrect access control in Chamilo 1.11.* up to 1.11.18 allows a student subscribed to a given course to download documents belonging to another student if they know the document's ID.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-38997 | Incorrect access control in Chamilo 1.11.* up to 1.11.18 allows a student subscribed to a given course to download documents belonging to another student if they know the document's ID. |
References
History
Mon, 06 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-863 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-01-06T21:00:15.837Z
Reserved: 2023-06-07T00:00:00.000Z
Link: CVE-2023-34958
Updated: 2024-08-02T16:17:04.146Z
Status : Modified
Published: 2023-06-08T19:15:09.920
Modified: 2025-01-06T21:15:12.510
Link: CVE-2023-34958
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD