CVE-2023-39582: SQL Injection
SQL Injection vulnerability in Chamilo LMS v.1.11 thru v.1.11.20 allows a remote privileged attacker to obtain sensitive information via the import sessions functions.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-39582?
CVE-2023-39582 is a SQL Injection vulnerability in Chamilo LMS v.1.11 through v.1.11.20.
How does CVE-2023-39582 affect Chamilo LMS?
CVE-2023-39582 allows a remote privileged attacker to obtain sensitive information via the import sessions functions in Chamilo LMS v.1.11 through v.1.11.20.
What is the severity of CVE-2023-39582?
CVE-2023-39582 has a severity score of 4.9, which is considered medium.
How can I fix CVE-2023-39582 in Chamilo LMS?
To fix CVE-2023-39582 in Chamilo LMS, you should apply the necessary patches or upgrades provided by Chamilo. It is important to keep your Chamilo LMS installation up to date.
Where can I find more information about CVE-2023-39582?
You can find more information about CVE-2023-39582 at the following link: [Chamilo Security Issues](https://support.chamilo.org/projects/chamilo-18/wiki/Security_issues#Issue-126-2023-07-18-High-impact-Low-risk-SQL-injection-by-admin-users)