CVE-2023-34959
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Jun 8, 2023
Updated: Jan 6, 2025
CWE ID 918
Summary
CVE-2023-34959 is a serious vulnerability affecting Chamilo versions 1.11.* up to 1.11.18. This issue permits attackers to perform Server-Side Request Forgery (SSRF), enabling them to make malicious requests to the server and gain information about the running services. By manipulating social and links tools, attackers can craft requests that trick the server into revealing sensitive data, potentially leading to security breaches and unauthorized access.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Chamilo Lms
Affected Vendors
- Chamilo