Moodle — система управления образовательными электронными курсами
Релизный цикл, информация об уязвимостях
График релизов
Количество 2 541
GHSA-rmq4-phgg-pxp4
Unknown vulnerability in Moodle before 1.3.3 has unknown impact and attack vectors, related to language setting.
GHSA-fmfx-pgpf-66r5
Unknown vulnerability in Moodle before 1.2 has unknown impact and attack vectors, related to improper filtering of text.
GHSA-3jh2-34x2-mr98
Unknown "front page vulnerability with Moodle servers" for Moodle before 1.3.2 has unknown impact and attack vectors.
GHSA-58r8-934v-x9pp
Unknown vulnerability in Moodle before 1.2 allows teachers to log in as administrators.
GHSA-w643-3f26-m8v5
Unknown vulnerability in Moodle before 1.3.4 has unknown impact and attack vectors, related to "strings in Moodle texts."
GHSA-853r-xfvj-j429
SQL injection vulnerability in sql.php in the Glossary module in Moodle 1.4.1 and earlier allows remote attackers to modify SQL statements.
GHSA-2c5m-jj29-px47
Cross-site scripting (XSS) vulnerability in help.php in Moodle before 1.3 allows remote attackers to inject arbitrary HTML and web script via the text parameter.
GHSA-hj48-8q8c-q7g9
Cross-site scripting (XSS) vulnerability in post.php in Moodle before 1.3 allows remote attackers to inject arbitrary web script or HTML via the reply parameter.
GHSA-3vcq-64gh-84x2
Directory traversal vulnerability in file.php in Moodle 1.4.2 and earlier allows remote attackers to read arbitrary session files for known session IDs via a .. (dot dot) in the file parameter.
GHSA-79h5-2hp9-w4p4
Cross-site scripting (XSS) vulnerability in view.php in Moodle 1.4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
---|---|---|---|---|
GHSA-rmq4-phgg-pxp4 Unknown vulnerability in Moodle before 1.3.3 has unknown impact and attack vectors, related to language setting. | 0% Низкий | больше 3 лет назад | ||
GHSA-fmfx-pgpf-66r5 Unknown vulnerability in Moodle before 1.2 has unknown impact and attack vectors, related to improper filtering of text. | 0% Низкий | больше 3 лет назад | ||
GHSA-3jh2-34x2-mr98 Unknown "front page vulnerability with Moodle servers" for Moodle before 1.3.2 has unknown impact and attack vectors. | 1% Низкий | больше 3 лет назад | ||
GHSA-58r8-934v-x9pp Unknown vulnerability in Moodle before 1.2 allows teachers to log in as administrators. | 0% Низкий | больше 3 лет назад | ||
GHSA-w643-3f26-m8v5 Unknown vulnerability in Moodle before 1.3.4 has unknown impact and attack vectors, related to "strings in Moodle texts." | 0% Низкий | больше 3 лет назад | ||
GHSA-853r-xfvj-j429 SQL injection vulnerability in sql.php in the Glossary module in Moodle 1.4.1 and earlier allows remote attackers to modify SQL statements. | 1% Низкий | больше 3 лет назад | ||
GHSA-2c5m-jj29-px47 Cross-site scripting (XSS) vulnerability in help.php in Moodle before 1.3 allows remote attackers to inject arbitrary HTML and web script via the text parameter. | 4% Низкий | больше 3 лет назад | ||
GHSA-hj48-8q8c-q7g9 Cross-site scripting (XSS) vulnerability in post.php in Moodle before 1.3 allows remote attackers to inject arbitrary web script or HTML via the reply parameter. | 0% Низкий | больше 3 лет назад | ||
GHSA-3vcq-64gh-84x2 Directory traversal vulnerability in file.php in Moodle 1.4.2 and earlier allows remote attackers to read arbitrary session files for known session IDs via a .. (dot dot) in the file parameter. | 1% Низкий | больше 3 лет назад | ||
GHSA-79h5-2hp9-w4p4 Cross-site scripting (XSS) vulnerability in view.php in Moodle 1.4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter. | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу