CVE-2022-27421: Input Validation
Published Apr 15, 2022
·Updated
Chamilo LMS v1.11.13 lacks validation on the user modification form, allowing attackers to escalate privileges to Platform Admin.
Affected Software
1 affected component
Chamilo Chamilo LMS<=1.11.14
Remediation
Patch Available
Event History
Apr 15, 2022
CVE Published
via MITRE·07:21 PM
Data Sourced
via MITRE·07:21 PM
Description
Frequently Asked Questions
1
What is CVE-2022-27421?
CVE-2022-27421 is a vulnerability in Chamilo LMS v1.11.13 that allows attackers to escalate privileges to Platform Admin.
2
How does CVE-2022-27421 affect Chamilo LMS?
CVE-2022-27421 affects Chamilo LMS v1.11.13 by allowing attackers to escalate privileges to Platform Admin.
3
What is the severity of CVE-2022-27421?
CVE-2022-27421 has a severity rating of 7.2 (High).
4
How can I fix CVE-2022-27421 in Chamilo LMS?
To fix CVE-2022-27421 in Chamilo LMS, you should update to version 1.11.14 or a higher version.
5
Where can I find more information about CVE-2022-27421?
You can find more information about CVE-2022-27421 at the following link: https://support.chamilo.org/projects/1/wiki/Security_issues