V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

95 / 95
Product: chamilo:chamilo×Clear all
9.8
CVE-2023-34960CVE
A command injection vulnerability in the wsConvertPpt component of Chamilo v1.11.* up to v1.11.…
2023-01-01Pre-auth
EPSS99.3%
pct 99
9.8
CVE-2023-3368CVE
Command injection in `/main/webservices/additional_webservices.php` in Chamilo LMS <= v1.11.20 …
2023-01-01Pre-auth
EPSS68.9%
pct 99
9.8
CVE-2021-34187CVE
main/inc/ajax/model.ajax.php in Chamilo through 1.11.14 allows SQL Injection via the searchFiel…
2021-01-01Pre-auth
EPSS15.6%
pct 96
7.2
CVE-2021-31933CVE
A remote code execution vulnerability exists in Chamilo through 1.11.14 due to improper input s…
2021-01-01
EPSS13.9%
pct 96
7.1
CVE-2025-50196ANC
Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injec…
2025-01-01
EPSS2.7%
pct 84
9.8
CVE-2023-3533CVE
Path traversal in file upload functionality in `/main/webservices/additional_webservices.php` i…
2023-01-01Pre-auth
EPSS2.7%
pct 84
7.1
CVE-2025-50197ANC
Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injec…
2025-01-01
EPSS2.7%
pct 83
7.1
CVE-2025-50195ANC
Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injec…
2025-01-01
EPSS2.7%
pct 83
7.1
CVE-2025-50194ANC
Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injec…
2025-01-01
EPSS2.6%
pct 83
7.1
CVE-2025-50193ANC
Chamilo is a learning management system. Prior to version 1.11.30, there is an OS command Injec…
2025-01-01
EPSS2.6%
pct 83
9.8
CVE-2023-3545CVE
Improper sanitisation in `main/inc/lib/fileUpload.lib.php` in Chamilo LMS <= v1.11.20 on Window…
2023-01-01Pre-auth
EPSS2.0%
pct 77
6.5
CVE-2021-32925CVE
admin/user_import.php in Chamilo 1.11.x reads XML data without disabling the ability to load ex…
2021-01-01
EPSS1.9%
pct 77
8.8
CVE-2026-35196ANC
Chamilo LMS is an open-source learning management system. In versions prior to 2.0.0-RC.3, an O…
2026-01-01
EPSS1.7%
pct 74
8.8
CVE-2026-32892ANC
Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, Chamilo LMS conta…
2026-01-01
EPSS1.5%
pct 71
6.1
CVE-2012-4029CVE
Cross-site scripting (XSS) vulnerability in main/dropbox/index.php in Chamilo LMS before 1.8.8.…
2012-01-01Pre-auth
EPSS1.4%
pct 69
6.1
CVE-2021-43687CVE
chamilo-lms v1.11.14 is affected by a Cross Site Scripting (XSS) vulnerability in /plugin/jcapt…
2021-01-01Pre-auth
EPSS1.4%
pct 68
8.8
CVE-2022-40407CVE
A zip slip vulnerability in the file upload function of Chamilo v1.11 allows attackers to execu…
2022-01-01
EPSS1.2%
pct 64
8.8
CVE-2021-40662CVE
A Cross-Site Request Forgery (CSRF) in Chamilo LMS 1.11.14 allows attackers to execute arbitrar…
2021-01-01Pre-auth
EPSS1.1%
pct 60
6.1
CVE-2021-26746CVE
Chamilo 1.11.14 allows XSS via a main/calendar/agenda_list.php?type= URI.
2021-01-01Pre-auth
EPSS1.0%
pct 59
6.1
CVE-2021-37389CVE
Chamilo 1.11.14 allows stored XSS via main/install/index.php and main/install/ajax.php through …
2021-01-01Pre-auth
EPSS1.0%
pct 59
8.7
CVE-2024-47886ANC
Chamilo is a learning management system. Chamillo is affected by a post-authentication phar uns…
2024-01-01Pre-auth
EPSS0.9%
pct 55
9.8
CVE-2025-50187ANC
Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request …
2025-01-01Pre-auth
EPSS0.9%
pct 54
6.8
CVE-2021-38745CVE
Chamilo LMS v1.11.14 was discovered to contain a zero click code injection vulnerability which …
2021-01-01
EPSS0.8%
pct 51
6.1
CVE-2013-0739CVE
Chamilo 1.9.4 has XSS due to improper validation of user-supplied input by the chat.php script.
2013-01-01Pre-auth
EPSS0.8%
pct 51
6.1
CVE-2013-0738CVE
Chamilo 1.9.4 has Multiple XSS and HTML Injection Vulnerabilities: blog.php and announcements.p…
2013-01-01Pre-auth
EPSS0.8%
pct 51
7.2
CVE-2025-50189ANC
Chamilo is a learning management system. Prior to version 1.11.30, the application performs ins…
2025-01-01
EPSS0.7%
pct 49
8.8
CVE-2026-29041ANC
Chamilo is a learning management system. Prior to version 1.11.34, Chamilo LMS is affected by a…
2026-01-01
EPSS0.7%
pct 49
7.0
CVE-2025-50188ANC
Chamilo is a learning management system. Prior to version 1.11.30, the application performs ins…
2025-01-01
EPSS0.7%
pct 48
8.8
CVE-2022-42029CVE
Chamilo 1.11.16 is affected by an authenticated local file inclusion vulnerability which allows…
2022-01-01
EPSS0.7%
pct 48
8.8
CVE-2025-50192ANC
Chamilo is a learning management system. Prior to version 1.11.30, there is a time-based SQL In…
2025-01-01Pre-auth
EPSS0.6%
pct 43
8.8
CVE-2025-50190ANC
Chamilo is a learning management system. Prior to version 1.11.30, there is an error-based SQL …
2025-01-01Pre-auth
EPSS0.6%
pct 43
6.1
CVE-2022-27425CVE
Chamilo LMS v1.11.13 was discovered to contain a cross-site scripting (XSS) vulnerability via t…
2022-01-01Pre-auth
EPSS0.6%
pct 41
7.0
CVE-2025-50191ANC
Chamilo is a learning management system. Prior to version 1.11.30, there is an error-based SQL …
2025-01-01
EPSS0.5%
pct 40
8.8
CVE-2026-30875ANC
Chamilo LMS is a learning management system. Prior to version 1.11.36, an arbitrary file upload…
2026-01-01
EPSS0.5%
pct 39
8.8
CVE-2026-32931ANC
Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, an unrestricted f…
2026-01-01
EPSS0.5%
pct 38
8.8
CVE-2026-33704ANC
Chamilo LMS is a learning management system. Prior to 1.11.38, any authenticated user (includin…
2026-01-01
EPSS0.4%
pct 33
9.8
CVE-2026-33707ANC
Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, the default passw…
2026-01-01Pre-auth
EPSS0.4%
pct 33
8.3
CVE-2025-52482ANC
Chamilo is a learning management system. Prior to version 1.11.30, a Stored XSS vulnerability e…
2025-01-01
EPSS0.4%
pct 28
7.0
CVE-2025-52998ANC
Chamilo is a learning management system. Prior to version 1.11.30, in the application, deserial…
2025-01-01
EPSS0.4%
pct 28
7.7
CVE-2025-50199ANC
Chamilo is a learning management system. Prior to version 1.11.30, there is a blind SSRF vulner…
2025-01-01Pre-auth
EPSS0.4%
pct 28
Select a vulnerability on the left to open the preview.