mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 02:31:38 +00:00
746 B
746 B
CVE-2023-4224
Description
Unrestricted file upload in /main/inc/ajax/dropbox.ajax.php
in Chamilo LMS <= v1.11.24 allows authenticated attackers with learner role to obtain remote code execution via uploading of PHP files.
POC
Reference
Github
No PoCs found on GitHub currently.