Описание
Multiple cross-site scripting (XSS) vulnerabilities in badges/renderer.php in Moodle 2.5.x before 2.5.7, 2.6.x before 2.6.4, and 2.7.x before 2.7.1 allow remote attackers to inject arbitrary web script or HTML via an external badge.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | not-affected | 2.7.5+dfsg-1 |
| cosmic | not-affected | 2.7.5+dfsg-1 |
| devel | not-affected | 2.7.5+dfsg-1 |
| disco | not-affected | 2.7.5+dfsg-1 |
| esm-apps/bionic | not-affected | 2.7.5+dfsg-1 |
| esm-apps/xenial | not-affected | 2.7.5+dfsg-1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
| lucid | ignored | end of life |
| precise | ignored | end of life |
Показывать по
10
4.3 Medium
CVSS2
Связанные уязвимости
nvd
больше 11 лет назад
Multiple cross-site scripting (XSS) vulnerabilities in badges/renderer.php in Moodle 2.5.x before 2.5.7, 2.6.x before 2.6.4, and 2.7.x before 2.7.1 allow remote attackers to inject arbitrary web script or HTML via an external badge.
debian
больше 11 лет назад
Multiple cross-site scripting (XSS) vulnerabilities in badges/renderer ...
github
больше 3 лет назад
Moodle multiple cross-site scripting (XSS) vulnerabilities
4.3 Medium
CVSS2