Описание
In Moodle 2.x and 3.x, a CSRF attack is possible that allows attackers to change the "number of courses displayed in the course overview block" configuration setting.
Релиз | Статус | Примечание |
---|---|---|
artful | ignored | end of life |
bionic | ignored | end of standard support, was needed |
cosmic | ignored | end of life |
devel | DNE | |
disco | ignored | end of life |
eoan | ignored | end of life |
esm-apps/bionic | needed | |
esm-apps/xenial | needed | |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
esm-infra/focal | DNE |
Показывать по
10
EPSS
Процентиль: 32%
0.00122
Низкий
4.3 Medium
CVSS2
4.3 Medium
CVSS3
Связанные уязвимости
CVSS3: 4.3
nvd
около 8 лет назад
In Moodle 2.x and 3.x, a CSRF attack is possible that allows attackers to change the "number of courses displayed in the course overview block" configuration setting.
CVSS3: 4.3
debian
около 8 лет назад
In Moodle 2.x and 3.x, a CSRF attack is possible that allows attackers ...
EPSS
Процентиль: 32%
0.00122
Низкий
4.3 Medium
CVSS2
4.3 Medium
CVSS3