Cross-Site Scripting Vulnerability in Chamilo by Chamilo Foundation
CVE-2023-37063
4.8MEDIUM
What is CVE-2023-37063?
A vulnerability in Chamilo LMS versions 1.11.x up to 1.11.20 allows users with administrative privileges to inject malicious scripts through the careers and promotions management section, potentially compromising web application integrity. This can result in unauthorized access or manipulation of user data, impacting both the application and its users.