CVE-2023-31799: XSS
Published May 9, 2023
·Updated
Cross Site Scripting vulnerability found in Chamilo Lms v.1.11.18 allows a local attacker to execute arbitrary code via the system annnouncements parameter.
Affected Software
1 affected component
Chamilo Chamilo LMS=1.11.18
Event History
May 9, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-31799?
The severity of CVE-2023-31799 is medium.
2
How does CVE-2023-31799 affect Chamilo Lms?
CVE-2023-31799 affects Chamilo Lms version 1.11.18.
3
What is the vulnerability in Chamilo Lms?
The vulnerability in Chamilo Lms is a Cross Site Scripting (XSS) vulnerability.
4
How can an attacker exploit CVE-2023-31799?
An attacker can exploit CVE-2023-31799 by executing arbitrary code via the system annnouncements parameter.
5
Is there a fix available for CVE-2023-31799 in Chamilo Lms?
Yes, a fix for CVE-2023-31799 in Chamilo Lms may be available. Please refer to the Chamilo Lms support website for more information.