andrejspuler
5 exploits
Active since May 2021
Chamilo LMS 1.11.0-1.11.16 - Unauthenticated SQL Injection via doc Parameter
CVSS 9.8
Chamilo 1.11.0-1.11.15 - Authenticated XML External Entity Injection in User Import
CVSS 6.5
Chamilo LMS 1.11.0-1.11.16 - Authenticated Remote Code Execution via .htaccess File Upload
CVSS 8.8
Chamilo LMS 1.11.0-1.11.16 - Unauthenticated SQL Injection via doc Parameter
CVSS 9.8
Chamilo LMS 1.11.0 through 1.11.16 - Stored Cross-Site Scripting
CVSS 4.8