Description
An arbitrary file upload vulnerability in the /fileUpload.lib.php component of Chamilo 1.11.* up to v1.11.18 allows attackers to execute arbitrary code via uploading a crafted SVG file.
Remediation
References
Related Vulnerabilities
Drupal Core 9.3.x Cross-Site Scripting (9.3.0 - 9.3.18)
Java Unspesificed Vulnerability (CVE-2018-2940)
WordPress Plugin Ultimate Membership Pro SQL Injection (3.3)
WordPress Configuration Vulnerability (CVE-2013-2205)
WordPress Plugin Backend Localization Multiple Cross-Site Scripting Vulnerabilities (1.6.1)