CVE-2018-20329
21.12.2018, 06:29
Chamilo LMS version 1.11.8 contains a main/inc/lib/CoursesAndSessionsCatalog.class.php SQL injection, allowing users with access to the sessions catalogue (which may optionally be made public) to extract and/or modify database information.
Vendor | Product | Version |
---|---|---|
chamilo | chamilo_lms | 1.11.8 |
𝑥
= Vulnerable software versions
References