Chamilo LMS Unauthenticated Remote Code Execution via Arbitrary File Write
CVE-2023-3533

9.8CRITICAL

Key Information:

Vendor

Chamilo

Status
Vendor
CVE Published:
28 November 2023

What is CVE-2023-3533?

A vulnerability in the file upload functionality within Chamilo LMS versions up to 1.11.20 allows unauthenticated attackers to exploit a path traversal issue. This can lead to stored cross-site scripting (XSS) attacks and enables malicious users to write arbitrary files, potentially leading to remote code execution. Attackers can manipulate the application to access files outside of the intended directory, compromising the integrity of the system. It is crucial for affected users to apply available patches to mitigate this risk.

Affected Version(s)

Chamilo 0 <= 1.11.20

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Ngo Wei Lin (@Creastery) of STAR Labs SG Pte. Ltd. (@starlabs_sg)
.