Angel Fernando Quiroz Campos
82 exploits
Active since Jun 2023
Chamilo LMS <= 1.11.24 - Authenticated Remote Code Execution via Unrestricted PHP File Upload
CVSS 8.8
Chamilo LMS 1.11.26 - Cross-Site Scripting via new_ticket.php Filename Parameter
CVSS 7.1
Chamilo LMS 1.11.26 - Cross-Site Scripting via home.php Filename Parameter
CVSS 4.6
Chamilo LMS 1.11.26 - Incorrect Access Control via Profile Endpoint
CVSS 8.8
Chamilo LMS 1.11.26 - Cross-Site Request Forgery in Social Wall Post
CVSS 5.4
Chamilo LMS 1.11.26 - Stored Cross-Site Scripting via Group Topics Content Parameter
CVSS 6.1
Chamilo LMS Version 1.11.26 - Info Disclosure
CVSS 7.5