CVE-2025-50193 | Chamilo LMS up to 1.11.29 import.php to_main_database os command injection (EUVD-2025-208162)
A vulnerability described as critical has been identified in Chamilo LMS up to 1.11.29. This issue affects some unknown processing of the file /plugin/vchamilo/views/import.php. Such manipulation of the argument to_main_database leads to os command injection.
This vulnerability is traded as CVE-2025-50193. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.