Логотип exploitDog
product: "moodle"
Консоль
Логотип exploitDog

exploitDog

product: "moodle"
Moodle

Moodleсистема управления образовательными электронными курсами

Релизный цикл, информация об уязвимостях

Продукт: Moodle
Вендор: moodle

График релизов

4.55.05.120242025202620272028

Недавние уязвимости Moodle

Количество 2 647

github логотип

GHSA-fhg2-r2h9-h7q8

около 1 года назад

Moodle IDOR when deleting OAuth2 linked accounts

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-j822-x5gg-5r56

около 1 года назад

Moodle allows users to retrieve information they did not have permission to access

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2024-48899

около 1 года назад

A vulnerability was found in Moodle. Additional checks are required to ensure users can only fetch the list of course badges for courses that they are intended to have access to.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2024-48899

около 1 года назад

A vulnerability was found in Moodle. Additional checks are required to ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2024-45691

около 1 года назад

A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2024-45691

около 1 года назад

A flaw was found in Moodle. When restricting access to a lesson activi ...

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2024-45690

около 1 года назад

A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-45690

около 1 года назад

A flaw was found in Moodle. Additional checks were required to ensure ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-45689

около 1 года назад

A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2024-45689

около 1 года назад

A flaw was found in Moodle. Dynamic tables did not enforce capability ...

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-fhg2-r2h9-h7q8

Moodle IDOR when deleting OAuth2 linked accounts

CVSS3: 7.5
0%
Низкий
около 1 года назад
github логотип
GHSA-j822-x5gg-5r56

Moodle allows users to retrieve information they did not have permission to access

CVSS3: 6.5
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-48899

A vulnerability was found in Moodle. Additional checks are required to ensure users can only fetch the list of course badges for courses that they are intended to have access to.

CVSS3: 4.3
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-48899

A vulnerability was found in Moodle. Additional checks are required to ...

CVSS3: 4.3
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-45691

A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values.

CVSS3: 5.4
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-45691

A flaw was found in Moodle. When restricting access to a lesson activi ...

CVSS3: 5.4
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-45690

A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.

CVSS3: 7.5
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-45690

A flaw was found in Moodle. Additional checks were required to ensure ...

CVSS3: 7.5
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-45689

A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

CVSS3: 6.5
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-45689

A flaw was found in Moodle. Dynamic tables did not enforce capability ...

CVSS3: 6.5
0%
Низкий
около 1 года назад

Уязвимостей на страницу


Поделиться