Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Moodle

Moodleсистема управления образовательными электронными курсами

Релизный цикл, информация об уязвимостях

Продукт: Moodle
Вендор: moodle

График релизов

4.55.05.15.220242025202620272028

Недавние уязвимости Moodle

Количество 2 712

debian логотип

CVE-2024-45691

больше 1 года назад

A flaw was found in Moodle. When restricting access to a lesson activi ...

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2024-45690

больше 1 года назад

A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-45690

больше 1 года назад

A flaw was found in Moodle. Additional checks were required to ensure ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-45689

больше 1 года назад

A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2024-45689

больше 1 года назад

A flaw was found in Moodle. Dynamic tables did not enforce capability ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2024-45691

больше 1 года назад

A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values.

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2024-45690

больше 1 года назад

A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2024-48899

больше 1 года назад

A vulnerability was found in Moodle. Additional checks are required to ensure users can only fetch the list of course badges for courses that they are intended to have access to.

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2024-45689

больше 1 года назад

A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-x3x9-349x-2485

больше 1 года назад

moodle: IDOR in edit/delete RSS feed

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2024-45691

A flaw was found in Moodle. When restricting access to a lesson activi ...

CVSS3: 5.4
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-45690

A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-45690

A flaw was found in Moodle. Additional checks were required to ensure ...

CVSS3: 7.5
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-45689

A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-45689

A flaw was found in Moodle. Dynamic tables did not enforce capability ...

CVSS3: 6.5
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-45691

A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-45690

A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-48899

A vulnerability was found in Moodle. Additional checks are required to ensure users can only fetch the list of course badges for courses that they are intended to have access to.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-45689

A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-x3x9-349x-2485

moodle: IDOR in edit/delete RSS feed

CVSS3: 6.5
0%
Низкий
больше 1 года назад

Уязвимостей на страницу


Поделиться