Описание
Multiple cross-site scripting (XSS) vulnerabilities in badges/renderer.php in Moodle 2.5.x before 2.5.7, 2.6.x before 2.6.4, and 2.7.x before 2.7.1 allow remote attackers to inject arbitrary web script or HTML via an external badge.
Релиз | Статус | Примечание |
---|---|---|
artful | ignored | end of life |
bionic | not-affected | 2.7.5+dfsg-1 |
cosmic | not-affected | 2.7.5+dfsg-1 |
devel | not-affected | 2.7.5+dfsg-1 |
disco | not-affected | 2.7.5+dfsg-1 |
esm-apps/bionic | not-affected | 2.7.5+dfsg-1 |
esm-apps/xenial | not-affected | 2.7.5+dfsg-1 |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
lucid | ignored | end of life |
precise | ignored | end of life |
Показывать по
10
EPSS
Процентиль: 52%
0.00285
Низкий
4.3 Medium
CVSS2
Связанные уязвимости
nvd
почти 11 лет назад
Multiple cross-site scripting (XSS) vulnerabilities in badges/renderer.php in Moodle 2.5.x before 2.5.7, 2.6.x before 2.6.4, and 2.7.x before 2.7.1 allow remote attackers to inject arbitrary web script or HTML via an external badge.
debian
почти 11 лет назад
Multiple cross-site scripting (XSS) vulnerabilities in badges/renderer ...
github
около 3 лет назад
Moodle multiple cross-site scripting (XSS) vulnerabilities
EPSS
Процентиль: 52%
0.00285
Низкий
4.3 Medium
CVSS2