Логотип exploitDog
product: "moodle"
Консоль
Логотип exploitDog

exploitDog

product: "moodle"
Moodle

Moodleсистема управления образовательными электронными курсами

Релизный цикл, информация об уязвимостях

Продукт: Moodle
Вендор: moodle

График релизов

4.14.24.34.44.55.05.12022202320242025202620272028

Недавние уязвимости Moodle

Количество 2 541

debian логотип

CVE-2013-2083

больше 12 лет назад

The MoodleQuickForm class in lib/formslib.php in Moodle through 2.1.10 ...

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2013-2082

больше 12 лет назад

Moodle through 2.1.10, 2.2.x before 2.2.10, 2.3.x before 2.3.7, and 2.4.x before 2.4.4 does not enforce capability requirements for reading blog comments, which allows remote attackers to obtain sensitive information via a crafted request.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2013-2082

больше 12 лет назад

Moodle through 2.1.10, 2.2.x before 2.2.10, 2.3.x before 2.3.7, and 2. ...

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2013-2081

больше 12 лет назад

Moodle through 2.1.10, 2.2.x before 2.2.10, 2.3.x before 2.3.7, and 2.4.x before 2.4.4 does not consider "don't send" attributes during hub registration, which allows remote hubs to obtain sensitive site information by reading form data.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2013-2081

больше 12 лет назад

Moodle through 2.1.10, 2.2.x before 2.2.10, 2.3.x before 2.3.7, and 2. ...

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2013-2080

больше 12 лет назад

The core_grade component in Moodle through 2.2.10, 2.3.x before 2.3.7, and 2.4.x before 2.4.4 does not properly consider the existence of hidden grades, which allows remote authenticated users to obtain sensitive information by leveraging the student role and reading the Gradebook Overview report.

CVSS2: 4
EPSS: Низкий
debian логотип

CVE-2013-2080

больше 12 лет назад

The core_grade component in Moodle through 2.2.10, 2.3.x before 2.3.7, ...

CVSS2: 4
EPSS: Низкий
nvd логотип

CVE-2013-2079

больше 12 лет назад

mod/assign/locallib.php in the assignment module in Moodle 2.3.x before 2.3.7 and 2.4.x before 2.4.4 does not consider capability requirements during the processing of ZIP assignment-archive download (aka downloadall) requests, which allows remote authenticated users to read other users' assignments by leveraging the student role.

CVSS2: 4
EPSS: Низкий
debian логотип

CVE-2013-2079

больше 12 лет назад

mod/assign/locallib.php in the assignment module in Moodle 2.3.x befor ...

CVSS2: 4
EPSS: Низкий
ubuntu логотип

CVE-2013-2079

больше 12 лет назад

mod/assign/locallib.php in the assignment module in Moodle 2.3.x before 2.3.7 and 2.4.x before 2.4.4 does not consider capability requirements during the processing of ZIP assignment-archive download (aka downloadall) requests, which allows remote authenticated users to read other users' assignments by leveraging the student role.

CVSS2: 4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2013-2083

The MoodleQuickForm class in lib/formslib.php in Moodle through 2.1.10 ...

CVSS2: 5
1%
Низкий
больше 12 лет назад
nvd логотип
CVE-2013-2082

Moodle through 2.1.10, 2.2.x before 2.2.10, 2.3.x before 2.3.7, and 2.4.x before 2.4.4 does not enforce capability requirements for reading blog comments, which allows remote attackers to obtain sensitive information via a crafted request.

CVSS2: 5
1%
Низкий
больше 12 лет назад
debian логотип
CVE-2013-2082

Moodle through 2.1.10, 2.2.x before 2.2.10, 2.3.x before 2.3.7, and 2. ...

CVSS2: 5
1%
Низкий
больше 12 лет назад
nvd логотип
CVE-2013-2081

Moodle through 2.1.10, 2.2.x before 2.2.10, 2.3.x before 2.3.7, and 2.4.x before 2.4.4 does not consider "don't send" attributes during hub registration, which allows remote hubs to obtain sensitive site information by reading form data.

CVSS2: 4.3
0%
Низкий
больше 12 лет назад
debian логотип
CVE-2013-2081

Moodle through 2.1.10, 2.2.x before 2.2.10, 2.3.x before 2.3.7, and 2. ...

CVSS2: 4.3
0%
Низкий
больше 12 лет назад
nvd логотип
CVE-2013-2080

The core_grade component in Moodle through 2.2.10, 2.3.x before 2.3.7, and 2.4.x before 2.4.4 does not properly consider the existence of hidden grades, which allows remote authenticated users to obtain sensitive information by leveraging the student role and reading the Gradebook Overview report.

CVSS2: 4
0%
Низкий
больше 12 лет назад
debian логотип
CVE-2013-2080

The core_grade component in Moodle through 2.2.10, 2.3.x before 2.3.7, ...

CVSS2: 4
0%
Низкий
больше 12 лет назад
nvd логотип
CVE-2013-2079

mod/assign/locallib.php in the assignment module in Moodle 2.3.x before 2.3.7 and 2.4.x before 2.4.4 does not consider capability requirements during the processing of ZIP assignment-archive download (aka downloadall) requests, which allows remote authenticated users to read other users' assignments by leveraging the student role.

CVSS2: 4
0%
Низкий
больше 12 лет назад
debian логотип
CVE-2013-2079

mod/assign/locallib.php in the assignment module in Moodle 2.3.x befor ...

CVSS2: 4
0%
Низкий
больше 12 лет назад
ubuntu логотип
CVE-2013-2079

mod/assign/locallib.php in the assignment module in Moodle 2.3.x before 2.3.7 and 2.4.x before 2.4.4 does not consider capability requirements during the processing of ZIP assignment-archive download (aka downloadall) requests, which allows remote authenticated users to read other users' assignments by leveraging the student role.

CVSS2: 4
0%
Низкий
больше 12 лет назад

Уязвимостей на страницу


Поделиться