Looking for the vulnerability index of Invicti's legacy products?
Chamilo Improper Neutralization of Directives in Dynamically Evaluated Code (Eval Injection) Vulnerability - CVE-2025-50187 - Vulnerability Database

Chamilo Improper Neutralization of Directives in Dynamically Evaluated Code (Eval Injection) Vulnerability - CVE-2025-50187

Critical
Reference: CVE-2025-50187
Title: Chamilo Improper Neutralization of Directives in Dynamically Evaluated Code (Eval Injection) Vulnerability
Overview:

Chamilo is a learning management system. Prior to version 1.11.28 parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. This issue has been patched in version 1.11.28.