Medium severity4.9NVD Advisory· Published May 6, 2021· Updated Jun 17, 2026
CVE-2020-23128
CVE-2020-23128
Description
Chamilo LMS 1.11.10 does not properly manage privileges which could allow a user with Sessions administrator privilege to create a new user then use the edit user function to change this new user to administrator privilege.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Chamilo/Chamilo LMSdescription
Patches
Vulnerability mechanics
References
2- support.chamilo.org/projects/chamilo-18/wiki/Security_issuesnvdPatchVendor Advisory
- toandak.blogspot.com/2020/05/improper-privilege-management-in.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.