CVE-2023-37065: XSS
Published Jul 7, 2023
·Updated
Chamilo 1.11.x up to 1.11.20 allows users with admin privilege account to insert XSS in the session category management section.
Affected Software
1 affected component
Chamilo Chamilo>=1.11.0<=1.11.20
Remediation
Event History
Jul 7, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this Chamilo vulnerability?
The vulnerability ID of this Chamilo vulnerability is CVE-2023-37065.
2
What is the severity of CVE-2023-37065?
The severity of CVE-2023-37065 is medium with a CVSS score of 4.8.
3
What is the affected software of CVE-2023-37065?
The affected software of CVE-2023-37065 is Chamilo 1.11.x up to 1.11.20.
4
How can users exploit CVE-2023-37065?
Users with admin privilege account can exploit CVE-2023-37065 by inserting XSS in the session category management section.
5
How can I fix CVE-2023-37065?
To fix CVE-2023-37065, update Chamilo to version 1.11.21 or later.