CVE-2023-37063: XSS
Published Jul 7, 2023
·Updated
Chamilo 1.11.x up to 1.11.20 allows users with admin privilege account to insert XSS in the careers & promotions management section.
Affected Software
1 affected component
Chamilo Chamilo>=1.11.0<=1.11.20
Remediation
Event History
Jul 7, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this Chamilo vulnerability?
The vulnerability ID for this Chamilo vulnerability is CVE-2023-37063.
2
What is the severity of CVE-2023-37063?
The severity of CVE-2023-37063 is medium with a severity value of 4.8.
3
What is the affected software version range for CVE-2023-37063?
The affected software version range for CVE-2023-37063 is Chamilo 1.11.x up to 1.11.20.
4
What can users with admin privilege do in Chamilo 1.11.x up to 1.11.20?
Users with admin privilege in Chamilo 1.11.x up to 1.11.20 can insert XSS in the careers & promotions management section.
5
How can I fix the vulnerability CVE-2023-37063 in Chamilo 1.11.x up to 1.11.20?
To fix the vulnerability CVE-2023-37063 in Chamilo 1.11.x up to 1.11.20, update to a version beyond 1.11.20.