CVE-2025-50187

Published Mar 2, 2026

Last updated 2 months ago

Overview

Description
Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. This issue has been patched in version 1.11.28.
Source
security-advisories@github.com
NVD status
Analyzed
Products
chamilo_lms

Risk scores

CVSS 3.1

Type
Secondary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

security-advisories@github.com
CWE-95

Social media

Hype score
Not currently trending
  1. CVE-2025-50187 (CVSS:9.8, CRITICAL) is Analyzed. Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filt..https://t.co/0jWRRUO01i #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    @cracbot

    7 Mar 2026

    70 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. `Chamilo` LMS is affected by CVE-2025-50187, allowing Remote Code Execution via untrusted input. Prioritize patching for this #RCE #infosec issue. https://t.co/XkxNdX59yZ

    @pulsepatchio

    3 Mar 2026

    80 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. CVE-2025-50187 Remote Code Execution in Chamilo Learning Management System Befor... https://t.co/AH7i2CWzSj Customizable Vulnerability Alerts: https://t.co/U7998fz7yk

    @VulmonFeeds

    2 Mar 2026

    34 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. 🚨*CVE* CVE-2025-50187 Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. Th… https://t.co/9i5XIjeohp ----- Traducción: CVE-2025-50187 Cha… https://t.co/utmtNg

    @infoflowcloud

    2 Mar 2026

    88 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. 🔴 CVE-2025-50187 - Critical Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. This issue has been pat... https://t.co/710Q5T70nR https://t.co/0jgwCd4uiO

    @TheHackerWire

    2 Mar 2026

    97 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. CVE-2025-50187 Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. Th… https://t.co/b6TG9yT5HZ

    @CVEnew

    2 Mar 2026

    160 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. [CVE-2025-50187: CRITICAL] Critical cyber security vulnerability patched in Chamilo learning management system version 1.11.28, preventing Remote Code Execution through unfiltered SOAP requests.#cve,CVE-2025-50187,#cybersecurity https://t.co/aqlmB9elAN

    @CveFindCom

    2 Mar 2026

    73 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations