A remote code execution (RCE) vulnerability in course_intro_pdf_import.php of Chamilo LMS v1.11.x allows authenticated attackers to execute arbitrary code via a crafted .htaccess file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.032
EPSS Ranking 86.6%