cve/2023/CVE-2023-4221.md
2024-06-09 00:33:16 +00:00

870 B

CVE-2023-4221

Description

Command injection in main/lp/openoffice_presentation.class.php in Chamilo LMS <= v1.11.24 allows users permitted to upload Learning Paths to obtain remote code execution via improper neutralisation of special characters.

POC

Reference

Github

No PoCs found on GitHub currently.