PT-2026-32022 · Unknown · Chamilo Lms

Published

2026-04-10

·

Updated

2026-04-10

·

CVE-2026-33707

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Chamilo LMS versions prior to 1.11.38 and 2.0.0-RC.3
Description Chamilo LMS, a learning management system, had a flawed password reset mechanism. The system generated tokens using sha1($email) without a random component, expiration, or rate limiting. This allowed an attacker knowing a user's email address to compute the reset token and change the victim's password without authentication.
Recommendations Update to version 1.11.38 or 2.0.0-RC.3 to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-33707

Affected Products

Chamilo Lms