Title:Chamilo 命令注入漏洞 (CVE-2023-34960) Description:A command injection vulnerability in the wsConvertPpt component of Chamilo v1.11.* up to v1.11.18 allows attackers to execute arbitrary commands via a SOAP API call with a crafted PowerPoint name.
Description
chamilo soap api rce (/webservices/additional_webservices.php)
Readme
# cve-2023-34960
chamilo soap api rce (/webservices/additional_webservices.php)
1. It is advised to access via the original source first.2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →