Chamilo · Chamilo · CVE-2022-40407
**Name of the Vulnerable Software and Affected Versions**
Chamilo version 1.11
**Description**
A zip slip vulnerability in the file upload function allows attackers to execute arbitrary code via a crafted Zip file.
**Recommendations**
For Chamilo version 1.11, update to a version that fixes the zip slip vulnerability in the file upload function to prevent execution of arbitrary code via crafted Zip files.