Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5rcg-g278-6gmh

Опубликовано: 16 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8

Описание

A zero-code remote code injection vulnerability via configuration.php in Chamilo LMS v1.11.13 allows attackers to upload arbitrary code in the form of a new plugin.

A zero-code remote code injection vulnerability via configuration.php in Chamilo LMS v1.11.13 allows attackers to upload arbitrary code in the form of a new plugin.

8 High

CVSS3

Дефекты

CWE-94

Связанные уязвимости

nvd
почти 4 года назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-38745. Reason: This candidate is a duplicate of CVE-2021-38745. Notes: All CVE users should reference CVE-2021-38745 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

8 High

CVSS3

Дефекты

CWE-94