Description
Unrestricted file upload in `/main/inc/ajax/document.ajax.php` in Chamilo LMS <= v1.11.24 allows authenticated attackers with learner role to obtain remote code execution via uploading of PHP files.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-54096 | Unrestricted file upload in `/main/inc/ajax/document.ajax.php` in Chamilo LMS <= v1.11.24 allows authenticated attackers with learner role to obtain remote code execution via uploading of PHP files. |
References
History
Mon, 02 Dec 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: STAR_Labs
Published:
Updated: 2024-12-02T19:31:06.802Z
Reserved: 2023-08-08T06:52:31.060Z
Link: CVE-2023-4223
Updated: 2024-08-02T07:17:12.261Z
Status : Modified
Published: 2023-11-28T08:15:08.803
Modified: 2024-11-21T08:34:39.457
Link: CVE-2023-4223
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD