Description
Chamilo before 1.8.8.6 does not adequately handle user supplied input by the index.php script, which could allow remote attackers to delete arbitrary files.
Remediation
References
Related Vulnerabilities
WordPress Plugin Companion Revision Manager-Revision Control Unspecified Vulnerability (1.3)
Drupal Other Vulnerability (CVE-2006-4120)
Chamilo Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2021-38745)
WordPress Plugin LOGOSWARE SUITE Uploader Arbitrary File Upload (1.1.6)