Security Advisory
CVE-2012-4030
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Chamilo before 1.8.8.6 does not adequately handle user supplied input by the index.php script, which could allow remote attackers to delete arbitrary files.