Cross-Site Scripting Vulnerability in Chamilo Learning Management System
CVE-2023-37064
4.8MEDIUM
What is CVE-2023-37064?
An XSS vulnerability exists in Chamilo Learning Management System versions 1.11.x up to 1.11.20, allowing users with admin privileges to inject malicious scripts through the extra fields management section. This incident could potentially compromise the security of the application by executing scripts in the context of other users, leading to unauthorized data access or manipulation.