Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-2641

Опубликовано: 26 мар. 2017
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

In Moodle 2.x and 3.x, SQL injection can occur via user preferences.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:moodle:moodle:2.7.0:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.0:beta:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.0:rc1:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.0:rc2:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.1:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.2:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.3:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.4:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.5:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.6:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.7:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.8:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.9:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.10:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.11:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.12:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.13:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.14:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.15:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.16:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.17:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:2.7.18:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.0:beta:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.0:rc1:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.0:rc2:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.0:rc3:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.0:rc4:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.1:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.2:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.3:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.4:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.5:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.6:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.7:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.0.8:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.1.0:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.1.0:beta:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.1.0:rc1:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.1.0:rc2:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.1.1:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.1.2:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.1.3:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.1.4:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.2.0:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.2.0:beta:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.2.0:rc1:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.2.0:rc2:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.2.0:rc3:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.2.0:rc4:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.2.0:rc5:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:3.2.1:*:*:*:*:*:*:*

EPSS

Процентиль: 82%
0.01895
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 8 лет назад

In Moodle 2.x and 3.x, SQL injection can occur via user preferences.

CVSS3: 9.8
debian
около 8 лет назад

In Moodle 2.x and 3.x, SQL injection can occur via user preferences.

CVSS3: 9.8
github
около 3 лет назад

Moodle SQL injection via user preferences

EPSS

Процентиль: 82%
0.01895
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-89