Логотип exploitDog
product: "moodle"
Консоль
Логотип exploitDog

exploitDog

product: "moodle"
Moodle

Moodleсистема управления образовательными электронными курсами

Релизный цикл, информация об уязвимостях

Продукт: Moodle
Вендор: moodle

График релизов

4.55.05.120242025202620272028

Недавние уязвимости Moodle

Количество 2 647

debian логотип

CVE-2009-4300

около 16 лет назад

Multiple unspecified authentication plugins in Moodle 1.8 before 1.8.1 ...

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2009-4299

около 16 лет назад

mod/glossary/showentry.php in the Glossary module for Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not properly perform access control, which allows attackers to read unauthorized Glossary entries via unknown vectors.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2009-4299

около 16 лет назад

mod/glossary/showentry.php in the Glossary module for Moodle 1.8 befor ...

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2009-4298

около 16 лет назад

The LAMS module (mod/lams) for Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores the (1) username, (2) firstname, and (3) lastname fields within the user table, which allows attackers to obtain user account information via unknown vectors.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2009-4298

около 16 лет назад

The LAMS module (mod/lams) for Moodle 1.8 before 1.8.11 and 1.9 before ...

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2009-4297

около 16 лет назад

Multiple cross-site request forgery (CSRF) vulnerabilities in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 allow remote attackers to hijack the authentication of unspecified victims via unknown vectors.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2009-4297

около 16 лет назад

Multiple cross-site request forgery (CSRF) vulnerabilities in Moodle 1 ...

CVSS2: 6.8
EPSS: Низкий
ubuntu логотип

CVE-2009-4301

около 16 лет назад

mnet/lib.php in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7, when MNET services are enabled, does not properly check permissions, which allows remote authenticated servers to execute arbitrary MNET functions.

CVSS2: 6
EPSS: Низкий
ubuntu логотип

CVE-2009-4303

около 16 лет назад

Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores (1) password hashes and (2) unspecified "secrets" in backup files, which might allow attackers to obtain sensitive information.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2009-4304

около 16 лет назад

Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not use a random password salt in config.php, which makes it easier for attackers to conduct brute-force password guessing attacks.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2009-4300

Multiple unspecified authentication plugins in Moodle 1.8 before 1.8.1 ...

CVSS2: 5
1%
Низкий
около 16 лет назад
nvd логотип
CVE-2009-4299

mod/glossary/showentry.php in the Glossary module for Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not properly perform access control, which allows attackers to read unauthorized Glossary entries via unknown vectors.

CVSS2: 5
1%
Низкий
около 16 лет назад
debian логотип
CVE-2009-4299

mod/glossary/showentry.php in the Glossary module for Moodle 1.8 befor ...

CVSS2: 5
1%
Низкий
около 16 лет назад
nvd логотип
CVE-2009-4298

The LAMS module (mod/lams) for Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores the (1) username, (2) firstname, and (3) lastname fields within the user table, which allows attackers to obtain user account information via unknown vectors.

CVSS2: 5
1%
Низкий
около 16 лет назад
debian логотип
CVE-2009-4298

The LAMS module (mod/lams) for Moodle 1.8 before 1.8.11 and 1.9 before ...

CVSS2: 5
1%
Низкий
около 16 лет назад
nvd логотип
CVE-2009-4297

Multiple cross-site request forgery (CSRF) vulnerabilities in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 allow remote attackers to hijack the authentication of unspecified victims via unknown vectors.

CVSS2: 6.8
0%
Низкий
около 16 лет назад
debian логотип
CVE-2009-4297

Multiple cross-site request forgery (CSRF) vulnerabilities in Moodle 1 ...

CVSS2: 6.8
0%
Низкий
около 16 лет назад
ubuntu логотип
CVE-2009-4301

mnet/lib.php in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7, when MNET services are enabled, does not properly check permissions, which allows remote authenticated servers to execute arbitrary MNET functions.

CVSS2: 6
1%
Низкий
около 16 лет назад
ubuntu логотип
CVE-2009-4303

Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores (1) password hashes and (2) unspecified "secrets" in backup files, which might allow attackers to obtain sensitive information.

CVSS2: 5
1%
Низкий
около 16 лет назад
ubuntu логотип
CVE-2009-4304

Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not use a random password salt in config.php, which makes it easier for attackers to conduct brute-force password guessing attacks.

CVSS2: 7.5
1%
Низкий
около 16 лет назад

Уязвимостей на страницу


Поделиться