Description
main/inc/ajax/model.ajax.php in Chamilo through 1.11.14 allows SQL Injection via the searchField, filters, or filters2 parameter.
Remediation
References
Related Vulnerabilities
e107 Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-8098)
WordPress Plugin Ecwid Ecommerce Shopping Cart PHP Object Injection (4.4.3)
Nginx Uncontrolled Resource Consumption Vulnerability (CVE-2023-44487)
WordPress Plugin Ldap WP Login/Active Directory Integration Multiple Vulnerabilities (3.0.1)