First published: Wed May 05 2021(Updated: )
Chamilo LMS 1.11.10 is affected by Cross Site Request Forgery (CSRF) via the edit_user function by targeting an admin user.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Chamilo Chamilo Lms | =1.11.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-23127 is a vulnerability in Chamilo LMS 1.11.10 that allows Cross Site Request Forgery (CSRF) attacks.
CVE-2020-23127 affects Chamilo LMS 1.11.10 by allowing unauthorized users to perform actions on the system through a CSRF attack.
CVE-2020-23127 has a severity rating of 8.8 (high).
To fix CVE-2020-23127, it is recommended to upgrade to the latest version of Chamilo LMS and apply any security patches provided by the vendor.
You can find more information about CVE-2020-23127 on the Chamilo LMS support website and a blog post detailing the vulnerability.