Moodle — система управления образовательными электронными курсами
Релизный цикл, информация об уязвимостях
График релизов
Количество 2 647
CVE-2010-2231
Cross-site request forgery (CSRF) vulnerability in report/overview/rep ...
CVE-2010-2230
The KSES text cleaning filter in lib/weblib.php in Moodle before 1.8.13 and 1.9.x before 1.9.9 does not properly handle vbscript URIs, which allows remote authenticated users to conduct cross-site scripting (XSS) attacks via HTML input.
CVE-2010-2230
The KSES text cleaning filter in lib/weblib.php in Moodle before 1.8.1 ...
CVE-2010-2229
Multiple cross-site scripting (XSS) vulnerabilities in blog/index.php in Moodle before 1.8.13 and 1.9.x before 1.9.9 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters.
CVE-2010-2229
Multiple cross-site scripting (XSS) vulnerabilities in blog/index.php ...
CVE-2010-2228
Cross-site scripting (XSS) vulnerability in the MNET access-control interface in Moodle before 1.8.13 and 1.9.x before 1.9.9 allows remote attackers to inject arbitrary web script or HTML via vectors involving extended characters in a username.
CVE-2010-2228
Cross-site scripting (XSS) vulnerability in the MNET access-control in ...
CVE-2010-2229
Multiple cross-site scripting (XSS) vulnerabilities in blog/index.php in Moodle before 1.8.13 and 1.9.x before 1.9.9 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters.
CVE-2010-2228
Cross-site scripting (XSS) vulnerability in the MNET access-control interface in Moodle before 1.8.13 and 1.9.x before 1.9.9 allows remote attackers to inject arbitrary web script or HTML via vectors involving extended characters in a username.
CVE-2010-2230
The KSES text cleaning filter in lib/weblib.php in Moodle before 1.8.13 and 1.9.x before 1.9.9 does not properly handle vbscript URIs, which allows remote authenticated users to conduct cross-site scripting (XSS) attacks via HTML input.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2010-2231 Cross-site request forgery (CSRF) vulnerability in report/overview/rep ... | CVSS2: 6.8 | 1% Низкий | больше 15 лет назад | |
CVE-2010-2230 The KSES text cleaning filter in lib/weblib.php in Moodle before 1.8.13 and 1.9.x before 1.9.9 does not properly handle vbscript URIs, which allows remote authenticated users to conduct cross-site scripting (XSS) attacks via HTML input. | CVSS2: 4 | 0% Низкий | больше 15 лет назад | |
CVE-2010-2230 The KSES text cleaning filter in lib/weblib.php in Moodle before 1.8.1 ... | CVSS2: 4 | 0% Низкий | больше 15 лет назад | |
CVE-2010-2229 Multiple cross-site scripting (XSS) vulnerabilities in blog/index.php in Moodle before 1.8.13 and 1.9.x before 1.9.9 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters. | CVSS2: 4.3 | 1% Низкий | больше 15 лет назад | |
CVE-2010-2229 Multiple cross-site scripting (XSS) vulnerabilities in blog/index.php ... | CVSS2: 4.3 | 1% Низкий | больше 15 лет назад | |
CVE-2010-2228 Cross-site scripting (XSS) vulnerability in the MNET access-control interface in Moodle before 1.8.13 and 1.9.x before 1.9.9 allows remote attackers to inject arbitrary web script or HTML via vectors involving extended characters in a username. | CVSS2: 4.3 | 1% Низкий | больше 15 лет назад | |
CVE-2010-2228 Cross-site scripting (XSS) vulnerability in the MNET access-control in ... | CVSS2: 4.3 | 1% Низкий | больше 15 лет назад | |
CVE-2010-2229 Multiple cross-site scripting (XSS) vulnerabilities in blog/index.php in Moodle before 1.8.13 and 1.9.x before 1.9.9 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters. | CVSS2: 4.3 | 1% Низкий | больше 15 лет назад | |
CVE-2010-2228 Cross-site scripting (XSS) vulnerability in the MNET access-control interface in Moodle before 1.8.13 and 1.9.x before 1.9.9 allows remote attackers to inject arbitrary web script or HTML via vectors involving extended characters in a username. | CVSS2: 4.3 | 1% Низкий | больше 15 лет назад | |
CVE-2010-2230 The KSES text cleaning filter in lib/weblib.php in Moodle before 1.8.13 and 1.9.x before 1.9.9 does not properly handle vbscript URIs, which allows remote authenticated users to conduct cross-site scripting (XSS) attacks via HTML input. | CVSS2: 4 | 0% Низкий | больше 15 лет назад |
Уязвимостей на страницу