Lucene search

K
osvGoogleOSV:CVE-2021-38745
HistoryMar 21, 2022 - 9:15 p.m.

CVE-2021-38745

2022-03-2121:15:00
Google
osv.dev
3
chamilo lms
zero click
code injection

AI Score

8.5

Confidence

High

EPSS

0.001

Percentile

44.7%

Chamilo LMS v1.11.14 was discovered to contain a zero click code injection vulnerability which allows attackers to execute arbitrary code via a crafted plugin. This vulnerability is triggered through user interaction with the attacker’s profile page.

AI Score

8.5

Confidence

High

EPSS

0.001

Percentile

44.7%

Related for OSV:CVE-2021-38745