Medium severity6.1NVD Advisory· Published Dec 1, 2021· Updated Jul 9, 2026
CVE-2021-43687
CVE-2021-43687
Description
chamilo-lms v1.11.14 is affected by a Cross Site Scripting (XSS) vulnerability in /plugin/jcapture/applet.php if an attacker passes a message hex2bin in the cookie.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- chamilo-lms/chamilo-lmsdescription
Patches
Vulnerability mechanics
References
3- support.chamilo.org/projects/chamilo-18/wiki/Security_issuesnvdPatchVendor Advisory
- github.com/chamilo/chamilo-lms/blob/v1.11.14/plugin/jcapture/applet.phpnvdExploitThird Party Advisory
- github.com/chamilo/chamilo-lms/tree/v1.11.14nvdThird Party Advisory
News mentions
0No linked articles in our index yet.