- Description
- Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. This issue has been patched in version 1.11.28.
- Source
- security-advisories@github.com
- NVD status
- Analyzed
- Products
- chamilo_lms
CVSS 3.1
- Type
- Secondary
- Base score
- 9.8
- Impact score
- 5.9
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- CRITICAL
- security-advisories@github.com
- CWE-95
- Hype score
- Not currently trending
CVE-2025-50187 (CVSS:9.8, CRITICAL) is Analyzed. Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filt..https://t.co/0jWRRUO01i #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre
@cracbot
7 Mar 2026
70 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
`Chamilo` LMS is affected by CVE-2025-50187, allowing Remote Code Execution via untrusted input. Prioritize patching for this #RCE #infosec issue. https://t.co/XkxNdX59yZ
@pulsepatchio
3 Mar 2026
80 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-50187 Remote Code Execution in Chamilo Learning Management System Befor... https://t.co/AH7i2CWzSj Customizable Vulnerability Alerts: https://t.co/U7998fz7yk
@VulmonFeeds
2 Mar 2026
34 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨*CVE* CVE-2025-50187 Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. Th… https://t.co/9i5XIjeohp ----- Traducción: CVE-2025-50187 Cha… https://t.co/utmtNg
@infoflowcloud
2 Mar 2026
88 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🔴 CVE-2025-50187 - Critical Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. This issue has been pat... https://t.co/710Q5T70nR https://t.co/0jgwCd4uiO
@TheHackerWire
2 Mar 2026
97 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-50187 Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. Th… https://t.co/b6TG9yT5HZ
@CVEnew
2 Mar 2026
160 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[CVE-2025-50187: CRITICAL] Critical cyber security vulnerability patched in Chamilo learning management system version 1.11.28, preventing Remote Code Execution through unfiltered SOAP requests.#cve,CVE-2025-50187,#cybersecurity https://t.co/aqlmB9elAN
@CveFindCom
2 Mar 2026
73 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:chamilo:chamilo_lms:*:*:*:*:*:*:*:*",
"matchCriteriaId": "AAF24104-D81A-41EB-B201-C94686B4383F",
"versionEndExcluding": "1.11.28",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]