First published: Fri Nov 01 2024(Updated: )
Cross Site Scripting vulnerability in Chamilo LMS v.1.11.26 allows a remote attacker to escalate privileges via a crafted script to the filename parameter of the home.php component.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Chamilo LMS | ||
Chamilo LMS | =1.11.26 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-27525 is classified as a high severity Cross Site Scripting vulnerability.
To fix CVE-2024-27525, update to the latest version of Chamilo LMS that addresses this vulnerability.
CVE-2024-27525 affects the home.php component of Chamilo LMS.
Anyone using Chamilo LMS version 1.11.26 is vulnerable to CVE-2024-27525.
Yes, CVE-2024-27525 allows a remote attacker to escalate privileges via a crafted script.