Monday, 16 April 2012

[EN] Docebo LMS (3605) - vulnerabilities - part1

Some information below:

And some description:
"Docebo is a Learning Management System (LMS) or a Virtual Learning Environment (VLE). It is a Free web application for e-learning
THis projects aims to save the open source comnunity of docebo".

Ok, so now 'part1':
- 'html injection' attack:

- sql informations in debug:

 - information disclosure again:

- more soon...

What do You think...?