Conversation
New assessment for topic: CVE-2023-4220

Topic description: "Unrestricted file upload in big file upload functionality in `/main/inc/lib/javascript/bigupload/inc/bigUpload.php` in Chamilo LMS <= v1.11.24 allows unauthenticated attackers to perform stored cross-site scripting attacks and obtain remote code execution via uploading of web shell. ..."

"Chamilo LMS is a free software e-learning and content management system ..."

Link: https://attackerkb.com/assessments/bf6c1ddd-3805-4e8e-89ed-eecd9feb237b
0
0
0