A command injection vulnerability in the wsConvertPpt component of Chamilo v1.11.* up to v1.11.18 allows attackers to execute arbitrary commands via a SOAP API call with a crafted PowerPoint name.
PoC: CVE-2023-34960
Perform witth massive command injection (Chamilo)
PoC: CHAMILO-CVE-2023-34960
Python 2.7
PoC: cve-2023-34960
chamilo soap api rce (/webservices/additional_webservices.php)
PoC: ChExp
Automatic vuln scanner and exploiter for l7 ddos attacks using Chamilio CVE-2023-34960
PoC: CVE-2023-34960-ex
Perform with Massive Command Injection (Chamilo)
PoC: Chamilo__CVE-2023-34960_RCE-ouvuu
Chamilo__CVE-2023-34960_RCE批量扫描poc、exp
PoC: Chamilo__CVE-2023-34960_RCE
Chamilo__CVE-2023-34960_RCE批量扫描poc、exp
PoC: CVE-2023-34960
Chamilo CVE-2023-34960 Batch scan/exploit
PoC: CVE-2023-34960
CVE-2023-34960 Chamilo PoC
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Get alerted for CVEs like this
Register your stack and get notified within minutes when a matching CVE drops.
Start monitoring free