CVE-2025-50187Disclosure(chamilo / chamilo_lms)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch chamilo chamilo_lms systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. This issue has been patched in version 1.11.28.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-95

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • chamilo_lms

Threat summary

  • Patch or workaround signal is available
  • 9 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 9 signals
  • Disclosure: 7 classified signals
  • Peaked 4d ago at 5 mentions (2026-03-02); latest day: 1
  • 9 total mentions across 5 days

Affected systems

Vendors
Products
chamilo_lms

Deep dive

Activity timeline9 mentions / 5d
01345Mentions · 2026-03-02: 5Mentions · 2026-03-03: 1Mentions · 2026-03-05: 1Mentions · 2026-03-06: 1Mentions · 2026-03-07: 1Patch / Workaround · 2026-03-02: 2Patch / Workaround · 2026-03-03: 1Technical Details · 2026-03-02: 5Technical Details · 2026-03-03: 1Technical Details · 2026-03-05: 1Technical Details · 2026-03-06: 1Technical Details · 2026-03-07: 103-0203-0303-0503-0603-07
Signal classification2 categories
Disclosure
777.8%
Patch
222.2%
Referenced assets8 URLs
Classification over time
DateTotalLabels
2026-03-025
Disclosure3Patch2
2026-03-031
Disclosure1
2026-03-051
Disclosure1
2026-03-061
Disclosure1
2026-03-071
Disclosure1
Full discourse9 posts
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2025-50187 (CVSS:9.8, CRITICAL) is Analyzed. Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filt..https://nvd.nist.gov/vuln/detail/CVE-2025-50187 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The tweet reports analysis of CVE‑2025‑50187, noting a critical vulnerability in Chamilo’s SOAP handling, but lacks exploit details, patch info, or evidence of active attacks.

    00000101
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2025-50187 (CVSS:9.8, CRITICAL) is Analyzed. Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filt..https://nvd.nist.gov/vuln/detail/CVE-2025-50187 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post details CVE‑2025‑50187 as a critical flaw in Chamilo where a SOAP parameter is processed without filtering, but no exploits, patches, or active usage are mentioned.

    0000039
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2025-50187 (CVSS:9.8, CRITICAL) is Analyzed. Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filt..https://nvd.nist.gov/vuln/detail/CVE-2025-50187 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post announces CVE‑2025‑50187 affecting Chamilo LMS, noting its high CVSS score and a specific SOAP parameter flaw, but offers no PoC, exploit code, or remediation details.

    0000052
    173 followersView on X
  • PulsePatch.io@pulsepatchio
    Disclosure

    `Chamilo` LMS is affected by CVE-2025-50187, allowing Remote Code Execution via untrusted input. Prioritize patching for this #RCE #infosec issue. https://www.pulsepatch.io/posts/cve-2025-50187-chamilo-rce

    Post summary

    The post announces that Chamilo LMS is affected by CVE-2025-50187, a Remote Code Execution vulnerability, and urges users to prioritize patching.

    0000084
    1 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2025-50187 Remote Code Execution in Chamilo Learning Management System Befor... https://vulmon.com/vulnerabilitydetails?qid=CVE-2025-50187 Customizable Vulnerability Alerts: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=4

    Post summary

    A new CVE (CVE-2025-50187) for Remote Code Execution in Chamilo LMS is disclosed, with no PoC, exploit, or patch details provided.

    0000085
    4.0K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2025-50187 Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. Th… https://www.cve.org/CVERecord?id=CVE-2025-50187 ----- Traducción: CVE-2025-50187 Cha… http://infoflow.cloud`

    Post summary

    The post announces CVE‑2025‑50187, a remote code execution vulnerability in Chamilo’s SOAP interface before v1.11.28, providing technical details but no PoC, exploit, or patch information.

    0000093
    55 followersView on X
  • The Hacker Wire@TheHackerWire
    Patch

    🔴 CVE-2025-50187 - Critical Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. This issue has been pat... https://www.thehackerwire.com/vulnerability/CVE-2025-50187/ https://t.co/0jgwCd4uiO

    Post summary

    Chamilo’s SOAP endpoint allows remote code execution due to unsanitized parameters; the vulnerability is fixed in version 1.11.28, with no evidence of active exploitation or PoC reported.

    00000103
    122 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2025-50187 Chamilo is a learning management system. Prior to version 1.11.28, parameter from SOAP request is evaluated without filtering which leads to Remote Code Execution. Th… https://www.cve.org/CVERecord?id=CVE-2025-50187

    Post summary

    CVE-2025-50187 is a remote code execution flaw in Chamilo’s SOAP interface, affecting versions before 1.11.28 due to unsanitized parameters.

    00000186
    56.6K followersView on X
  • CVEFind.com@CveFindCom
    Patch

    [CVE-2025-50187: CRITICAL] Critical cyber security vulnerability patched in Chamilo learning management system version 1.11.28, preventing Remote Code Execution through unfiltered SOAP requests.#cve,CVE-2025-50187,#cybersecurity https://cvefind.com/CVE-2025-50187

    Post summary

    The CVE‑2025‑50187 vulnerability in Chamilo LMS has been patched in version 1.11.28, preventing RCE via unfiltered SOAP requests.

    0000080
    590 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appchamilochamilo_lms---

Explore more