Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:28469
HistorySep 02, 2012 - 12:00 a.m.

Chamilo 1.8.8.4 Multiple Vulnerabilities

2012-09-0200:00:00
vulners.com
32

Chamilo 1.8.8.4 Multiple Vulnerabilities

CVE: CVE-2012-4029
Issue: Reflected XSS PHP_SELF in third-party app, Stored XSS

http://chamilo/chamilo-1.8.8.4/main/dropbox/index.php?cidReq=LEETLANG&view=&action=addsentcategory

CVE: CVE-2012-4030
Issue: Unauthorized file delete

  • Unauthorized file delete

You have to be subscribed to the course and you can delete other users
categories by bruteforcing the category ID.

http://chamilo/chamilo-1.8.8.4/main/dropbox/index.php?cidReq=COURSEID&view_received_category=&view_sent_category=&view=&action=deletesentcategory&id=CATEGORYID

Vendor:
www.chamilo.org

Vendor informed:
Jul 16/2012

Vendor acknowledgement:
Jul 16/2012

Fix Released
Version 1.8.8.6 - Jul 20/2012

Related for SECURITYVULNS:DOC:28469