📦

claroline

Vendor: claroline

Actively Exploited 0 CISA KEV List
PoC / Exploits 15 Code Available
Total RCEs 2 Remote Access
Total CVEs 62 Total Indexed
Avg. EPSS 3.91% Exploit Prob.
Latest CVE CVE-2022-37162 Aug 25

Security Vulnerability Index

Page 4 / 7
7.5 CVSS
CVE-2005-1375
Exploit Found

Multiple SQL injection vulnerabilities in Claroline 1.5.3 through 1.6 Release Candidate 1, and possibly Dokeos, allow remote attackers to execute arbitrary SQL commands via (1) learningPath.php, (2) learningPathAdmin.php, (3) learnPath_details.php, (4) modules_pool.php, (5) module.php, (6) uInfo parameter in userInfo.php, or (7) exo_id parameter to exercises_details.php.

EPSS: 2.76%