Chamilo
79 known vulnerabilities
Top Products
Chamilo is a learning management system. Prior to version 1.11.30, a logic vulnerability in the friend request workflow
Chamilo is a learning management system. Prior to version 1.11.30, an input validation vulnerability exists when importi
Chamilo is a learning management system. Prior to version 1.11.30, there is a blind SSRF vulnerability in /index.php via
Chamilo is a learning management system. Prior to version 1.11.30, Chamilo is vulnerable to deserialization of untrusted
Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injection vulnerability in /ma
Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injection vulnerability in /pl
Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injection vulnerability in /pl
Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injection vulnerability in /ma
Chamilo is a learning management system. Prior to version 1.11.30, there is an OS command Injection vulnerability in /pl
Chamilo is a learning management system. Prior to version 1.11.30, a Stored XSS vulnerability exists in the glossary fun
Chamilo is a learning management system. Prior to version 1.11.30, there is a time-based SQL Injection in found in /main
Chamilo is a learning management system. Prior to version 1.11.30, there is an error-based SQL Injection via POST userFi
Chamilo is a learning management system. Prior to version 1.11.30, there is an error-based SQL Injection via the GET ope
Chamilo is a learning management system. Prior to version 1.11.30, the application performs insufficient validation of d
Chamilo is a learning management system. Prior to version 1.11.30, the application performs insufficient validation of d
Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filt
Chamilo is a learning management system. Prior to version 1.11.30, a stored cross-site scripting (XSS) vulnerability exi
Chamilo is a learning management system. Prior to version 1.11.28, the OpenId function allows anyone to send requests to
Chamilo is a learning management system. Chamillo is affected by a post-authentication phar unserialize which leads to a
A security flaw has been discovered in Chamilo LMS up to 2.0.0 Beta 1. This issue affects the function deleteLegal of th
An issue was discovered in Chamillo LMS 1.11.2. The Social Network /personal_data endpoint exposes full sensitive user i
Chamilo LMS 1.11.8 and 2.x allows remote code execution through an lp_upload.php unauthenticated file upload feature. It
Chamilo Chamilo-lms version 1.11.8 and earlier contains an Incorrect Access Control vulnerability in Tickets component t
Chamilo Chamilo-lms version 1.11.8 and earlier contains a Cross Site Scripting (XSS) vulnerability in main/messages/new_
Chamilo LMS version 1.11.8 contains a main/inc/lib/CoursesAndSessionsCatalog.class.php SQL injection, allowing users wit
Chamilo LMS version 1.11.8 contains XSS in main/social/group_view.php in the social groups tool, allowing authenticated
Chamilo LMS version 1.11.8 contains XSS in main/template/default/admin/gradebook_list.tpl in the gradebook dependencies
Chamilo LMS version 11.x contains an Unserialization vulnerability in the "hash" GET parameter for the api endpoint loca
Frequently Asked Questions
How many CVEs affect Chamilo?
Chamilo has 79 CVE records in our database, including 14 critical and 35 high severity vulnerabilities.
What are the most severe Chamilo vulnerabilities?
Chamilo has 14 critical severity (CVSS 9.0+) and 35 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Chamilo vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Chamilo products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Chamilo Vulnerabilities
CyberStrike scans your infrastructure for Chamilo vulnerabilities and provides real-time remediation guidance.
Get Started