CVE-2023-34944
chamilo lms
An arbitrary file upload vulnerability in the /fileUpload.lib.php component of Chamilo 1.11.* up to v1.11.18 allows attackers to execute arbitrary code via uploading a crafted SVG file.
- CVSS
- 9.8
- EPSS
- 1.07% 61.5% percentile
- CISA KEV
- Not listed
- Published
- 2023.06.14