Описание
The router’s inconsistent response to invalid course IDs allowed attackers to infer which course IDs exist, potentially aiding reconnaissance.
Ссылки
- Third Party Advisory
- Issue TrackingThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 5.0.0 (включая) до 5.0.3 (исключая)
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*
EPSS
Процентиль: 13%
0.00042
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-209
Связанные уязвимости
CVSS3: 5.3
ubuntu
3 месяца назад
The router’s inconsistent response to invalid course IDs allowed attackers to infer which course IDs exist, potentially aiding reconnaissance.
CVSS3: 5.3
debian
3 месяца назад
The router\u2019s inconsistent response to invalid course IDs allowed ...
CVSS3: 5.3
github
3 месяца назад
The router’s inconsistent response to invalid course IDs allowed attackers to infer which course IDs exist, potentially aiding reconnaissance.
EPSS
Процентиль: 13%
0.00042
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-209