Описание
Multiple cross-site scripting (XSS) vulnerabilities in Moodle through 2.3.11, 2.4.x before 2.4.11, 2.5.x before 2.5.7, 2.6.x before 2.6.4, and 2.7.x before 2.7.1 allow remote attackers to inject arbitrary web script or HTML via vectors that trigger an AJAX exception dialog.
Релиз | Статус | Примечание |
---|---|---|
artful | ignored | end of life |
bionic | not-affected | 2.7.5+dfsg-1 |
cosmic | not-affected | 2.7.5+dfsg-1 |
devel | not-affected | 2.7.5+dfsg-1 |
disco | not-affected | 2.7.5+dfsg-1 |
esm-apps/bionic | not-affected | 2.7.5+dfsg-1 |
esm-apps/xenial | not-affected | 2.7.5+dfsg-1 |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
lucid | ignored | end of life |
precise | ignored | end of life |
Показывать по
4.3 Medium
CVSS2
Связанные уязвимости
Multiple cross-site scripting (XSS) vulnerabilities in Moodle through 2.3.11, 2.4.x before 2.4.11, 2.5.x before 2.5.7, 2.6.x before 2.6.4, and 2.7.x before 2.7.1 allow remote attackers to inject arbitrary web script or HTML via vectors that trigger an AJAX exception dialog.
Multiple cross-site scripting (XSS) vulnerabilities in Moodle through ...
Moodle multiple cross-site scripting (XSS) vulnerabilities
4.3 Medium
CVSS2