Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2021-43687
chamilo-lms v1.11.14 is affected by a Cross Site Scripting (XSS) vulnerability in /plugin/jcapture/applet.php if an attacker passes a message hex2bin in the cookie.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.01
EPSS Ranking
75.5%
CVSS Severity
CVSS v3 Score
6.1
CVSS v2 Score
4.3
References
http://chamilo-lms.com
https://github.com/chamilo/chamilo-lms/blob/v1.11.14/plugin/jcapture/applet.php
https://github.com/chamilo/chamilo-lms/tree/v1.11.14
https://support.chamilo.org/projects/chamilo-18/wiki/Security_issues#Issue-92-2021-11-12-Low-impact-Low-risk-XSS-Vulnerability-in-jCapture-plugin-CVE-2021-43687
http://chamilo-lms.com
https://github.com/chamilo/chamilo-lms/blob/v1.11.14/plugin/jcapture/applet.php
https://github.com/chamilo/chamilo-lms/tree/v1.11.14
https://support.chamilo.org/projects/chamilo-18/wiki/Security_issues#Issue-92-2021-11-12-Low-impact-Low-risk-XSS-Vulnerability-in-jCapture-plugin-CVE-2021-43687
Products affected by CVE-2021-43687
Chamilo
»
Chamilo
»
Version:
1.11.14
cpe:2.3:a:chamilo:chamilo:1.11.14
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved