VendorsChamilochamilo_lmsall versions
Vulnerabilities

Chamilo LMS

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

122CVEs
CVE-2024-27525
Cross Site Scripting vulnerability in Chamilo LMS v.1.11.26 allows a remote attacker to escalate privileges via a crafted script to the filename parameter of the home.php component.
Published 2024-11-01 · Analyzed
4.6EPSS 0.004
CVE-2023-34958
Incorrect access control in Chamilo 1.11.* up to 1.11.18 allows a student subscribed to a given course to download documents belonging to another student if they know the document's ID.
Published 2023-06-08 · Modified
4.3EPSS 0.004
← Prev4 / 4