Moodle — система управления образовательными электронными курсами
Релизный цикл, информация об уязвимостях
График релизов
Количество 2 470
CVE-2011-4586
CRLF injection vulnerability in calendar/set.php in the Calendar subsy ...

CVE-2011-4585
login/change_password.php in Moodle 1.9.x before 1.9.15 does not use https for the change-password form even if the httpslogin option is enabled, which allows remote attackers to obtain credentials by sniffing the network.
CVE-2011-4585
login/change_password.php in Moodle 1.9.x before 1.9.15 does not use h ...

CVE-2011-4584
The MNET authentication functionality in Moodle 1.9.x before 1.9.15, 2.0.x before 2.0.6, and 2.1.x before 2.1.3 allows remote authenticated users to impersonate other user accounts by using the Login As feature in conjunction with a remote MNET single sign-on capability, as demonstrated by a Mahara site.
CVE-2011-4584
The MNET authentication functionality in Moodle 1.9.x before 1.9.15, 2 ...

CVE-2011-4583
Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3 displays web service tokens associated with (1) disabled services and (2) users who no longer have authorization, which allows remote authenticated users to have an unspecified impact by reading these tokens.
CVE-2011-4583
Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3 displays web service ...

CVE-2011-4582
Open redirect vulnerability in the Calendar set page in Moodle 2.1.x before 2.1.3 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via a redirection URL.
CVE-2011-4582
Open redirect vulnerability in the Calendar set page in Moodle 2.1.x b ...

CVE-2011-4581
mod/wiki/pagelib.php in Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3 allows remote authenticated users to discover the username of a wiki creator by visiting the history and deletion user interface.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
---|---|---|---|---|
CVE-2011-4586 CRLF injection vulnerability in calendar/set.php in the Calendar subsy ... | CVSS2: 5 | 0% Низкий | почти 13 лет назад | |
![]() | CVE-2011-4585 login/change_password.php in Moodle 1.9.x before 1.9.15 does not use https for the change-password form even if the httpslogin option is enabled, which allows remote attackers to obtain credentials by sniffing the network. | CVSS2: 5 | 0% Низкий | почти 13 лет назад |
CVE-2011-4585 login/change_password.php in Moodle 1.9.x before 1.9.15 does not use h ... | CVSS2: 5 | 0% Низкий | почти 13 лет назад | |
![]() | CVE-2011-4584 The MNET authentication functionality in Moodle 1.9.x before 1.9.15, 2.0.x before 2.0.6, and 2.1.x before 2.1.3 allows remote authenticated users to impersonate other user accounts by using the Login As feature in conjunction with a remote MNET single sign-on capability, as demonstrated by a Mahara site. | CVSS2: 4 | 0% Низкий | почти 13 лет назад |
CVE-2011-4584 The MNET authentication functionality in Moodle 1.9.x before 1.9.15, 2 ... | CVSS2: 4 | 0% Низкий | почти 13 лет назад | |
![]() | CVE-2011-4583 Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3 displays web service tokens associated with (1) disabled services and (2) users who no longer have authorization, which allows remote authenticated users to have an unspecified impact by reading these tokens. | CVSS2: 6.5 | 0% Низкий | почти 13 лет назад |
CVE-2011-4583 Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3 displays web service ... | CVSS2: 6.5 | 0% Низкий | почти 13 лет назад | |
![]() | CVE-2011-4582 Open redirect vulnerability in the Calendar set page in Moodle 2.1.x before 2.1.3 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via a redirection URL. | CVSS2: 4.9 | 0% Низкий | почти 13 лет назад |
CVE-2011-4582 Open redirect vulnerability in the Calendar set page in Moodle 2.1.x b ... | CVSS2: 4.9 | 0% Низкий | почти 13 лет назад | |
![]() | CVE-2011-4581 mod/wiki/pagelib.php in Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3 allows remote authenticated users to discover the username of a wiki creator by visiting the history and deletion user interface. | CVSS2: 4 | 0% Низкий | почти 13 лет назад |
Уязвимостей на страницу