Описание
Moodle Improper Input Validation
Unsafe direct use of $_SERVER['HTTP_REFERER'] in admin/tool/mfa/index.php. The referrer URL used by MFA required additional sanitizing, rather than being used directly.
Пакеты
Наименование
moodle/moodle
composer
Затронутые версииВерсия исправления
>= 4.3.0, < 4.3.4
4.3.4
Связанные уязвимости
CVSS3: 9.8
ubuntu
около 1 года назад
The referrer URL used by MFA required additional sanitizing, rather than being used directly.
CVSS3: 9.8
nvd
около 1 года назад
The referrer URL used by MFA required additional sanitizing, rather than being used directly.
CVSS3: 9.8
debian
около 1 года назад
The referrer URL used by MFA required additional sanitizing, rather th ...