Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Moodle

Moodleсистема управления образовательными электронными курсами

Релизный цикл, информация об уязвимостях

Продукт: Moodle
Вендор: moodle

График релизов

4.55.05.15.220242025202620272028

Недавние уязвимости Moodle

Количество 2 712

fstec логотип

BDU:2017-00177

больше 9 лет назад

Уязвимость системы управления обучением Мoodle, позволяющая нарушителю повысить свои привилегии

CVSS2: 5
EPSS: Низкий
fstec логотип

BDU:2017-00179

больше 9 лет назад

Уязвимость системы управления обучением Мoodle, позволяющая нарушителю нарушить конфиденциальность информации

CVSS2: 5
EPSS: Низкий
fstec логотип

BDU:2017-00178

больше 9 лет назад

Уязвимость системы управления обучением Мoodle, позволяющая нарушителю нарушить конфиденциальность информации

CVSS2: 4
EPSS: Низкий
nvd логотип

CVE-2016-9188

почти 10 лет назад

Cross-site scripting (XSS) vulnerabilities in Moodle CMS on or before 3.1.2 allow remote attackers to inject arbitrary web script or HTML via the s_additionalhtmlhead, s_additionalhtmltopofbody, and s_additionalhtmlfooter parameters.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2016-9188

почти 10 лет назад

Cross-site scripting (XSS) vulnerabilities in Moodle CMS on or before ...

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2016-9187

почти 10 лет назад

Unrestricted file upload vulnerability in the double extension support in the "image" module in Moodle 3.1.2 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, and then accessing it via unspecified vectors.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-9187

почти 10 лет назад

Unrestricted file upload vulnerability in the double extension support ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2016-9186

почти 10 лет назад

Unrestricted file upload vulnerability in the "legacy course files" and "file manager" modules in Moodle 3.1.2 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, and then accessing it via unspecified vectors.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-9186

почти 10 лет назад

Unrestricted file upload vulnerability in the "legacy course files" an ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2016-9186

почти 10 лет назад

Unrestricted file upload vulnerability in the "legacy course files" and "file manager" modules in Moodle 3.1.2 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, and then accessing it via unspecified vectors.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
fstec логотип
BDU:2017-00177

Уязвимость системы управления обучением Мoodle, позволяющая нарушителю повысить свои привилегии

CVSS2: 5
1%
Низкий
больше 9 лет назад
fstec логотип
BDU:2017-00179

Уязвимость системы управления обучением Мoodle, позволяющая нарушителю нарушить конфиденциальность информации

CVSS2: 5
1%
Низкий
больше 9 лет назад
fstec логотип
BDU:2017-00178

Уязвимость системы управления обучением Мoodle, позволяющая нарушителю нарушить конфиденциальность информации

CVSS2: 4
1%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-9188

Cross-site scripting (XSS) vulnerabilities in Moodle CMS on or before 3.1.2 allow remote attackers to inject arbitrary web script or HTML via the s_additionalhtmlhead, s_additionalhtmltopofbody, and s_additionalhtmlfooter parameters.

CVSS3: 6.1
2%
Низкий
почти 10 лет назад
debian логотип
CVE-2016-9188

Cross-site scripting (XSS) vulnerabilities in Moodle CMS on or before ...

CVSS3: 6.1
2%
Низкий
почти 10 лет назад
nvd логотип
CVE-2016-9187

Unrestricted file upload vulnerability in the double extension support in the "image" module in Moodle 3.1.2 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, and then accessing it via unspecified vectors.

CVSS3: 8.8
4%
Низкий
почти 10 лет назад
debian логотип
CVE-2016-9187

Unrestricted file upload vulnerability in the double extension support ...

CVSS3: 8.8
4%
Низкий
почти 10 лет назад
nvd логотип
CVE-2016-9186

Unrestricted file upload vulnerability in the "legacy course files" and "file manager" modules in Moodle 3.1.2 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, and then accessing it via unspecified vectors.

CVSS3: 8.8
4%
Низкий
почти 10 лет назад
debian логотип
CVE-2016-9186

Unrestricted file upload vulnerability in the "legacy course files" an ...

CVSS3: 8.8
4%
Низкий
почти 10 лет назад
ubuntu логотип
CVE-2016-9186

Unrestricted file upload vulnerability in the "legacy course files" and "file manager" modules in Moodle 3.1.2 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, and then accessing it via unspecified vectors.

CVSS3: 8.8
4%
Низкий
почти 10 лет назад

Уязвимостей на страницу


Поделиться