All verified exploits

CVE-2025-50192 SOAP SQL Injection

Deterministic critical Chamilo Added cve-verified-cve-2025-50192

Detects error-based SQL injection in Chamilo LMS via the SOAP WSCertificatesList startingDate parameter. The registration.soap.php endpoint interpolates date parameters directly into SQL without parameterization.

Is your app exploitable through CVE-2025-50192?

Scan your domain free