Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-5336

Опубликовано: 22 фев. 2016
Источник: debian

Описание

Multiple cross-site scripting (XSS) vulnerabilities in the survey module in Moodle through 2.6.11, 2.7.x before 2.7.11, 2.8.x before 2.8.9, and 2.9.x before 2.9.3 allow remote authenticated users to inject arbitrary web script or HTML by leveraging the student role and entering a crafted survey answer.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
moodlefixed2.7.11+dfsg-1package
moodleend-of-lifesqueezepackage

Связанные уязвимости

CVSS3: 5.4
ubuntu
почти 10 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the survey module in Moodle through 2.6.11, 2.7.x before 2.7.11, 2.8.x before 2.8.9, and 2.9.x before 2.9.3 allow remote authenticated users to inject arbitrary web script or HTML by leveraging the student role and entering a crafted survey answer.

CVSS3: 5.4
nvd
почти 10 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the survey module in Moodle through 2.6.11, 2.7.x before 2.7.11, 2.8.x before 2.8.9, and 2.9.x before 2.9.3 allow remote authenticated users to inject arbitrary web script or HTML by leveraging the student role and entering a crafted survey answer.

CVSS3: 5.4
github
больше 3 лет назад

Moodle multiple cross-site scripting (XSS) vulnerabilities

fstec
почти 10 лет назад

Уязвимости системы управления обучением Мoodle, позволяющие нарушителю внедрить произвольный Веб- или HTML-код