VendorsChamilochamilo_lms1.9.4
Vulnerabilities

Chamilo LMS 1.9.4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2013-6787
SQL injection vulnerability in the check_user_password function in main/auth/profile.php in Chamilo LMS 1.9.6 and earlier, when using the non-encrypted passwords mode set at installation, allows remote authenticated users to execute arbitrary SQL commands via the "password0" parameter.
Published 2013-12-05 · Modified
6.01 PoCEPSS 0.027