mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-05 10:17:57 +00:00
752 B
752 B
CVE-2023-4226
Description
Unrestricted file upload in /main/inc/ajax/work.ajax.php
in Chamilo LMS <= v1.11.24 allows authenticated attackers with learner role to obtain remote code execution via uploading of PHP files.