Описание
Moodle Affected by Improper Restriction of Excessive Authentication Attempts
A flaw was found in Moodle. A remote attacker could exploit a lack of proper rate limiting in the confirmation email service. This vulnerability allows attackers to more easily enumerate or guess user credentials, facilitating brute-force attacks against user accounts.
Пакеты
moodle/moodle
< 4.1.22
4.1.22
moodle/moodle
>= 4.4.0-beta, < 4.4.12
4.4.12
moodle/moodle
>= 4.5.0-beta, < 4.5.8
4.5.8
moodle/moodle
>= 5.0.0-beta, < 5.0.4
5.0.4
moodle/moodle
>= 5.1.0-beta, < 5.1.1
5.1.1
Связанные уязвимости
A flaw was found in Moodle. A remote attacker could exploit a lack of proper rate limiting in the confirmation email service. This vulnerability allows attackers to more easily enumerate or guess user credentials, facilitating brute-force attacks against user accounts.
A flaw was found in Moodle. A remote attacker could exploit a lack of proper rate limiting in the confirmation email service. This vulnerability allows attackers to more easily enumerate or guess user credentials, facilitating brute-force attacks against user accounts.
A flaw was found in Moodle. A remote attacker could exploit a lack of ...