Логотип exploitDog
product: "moodle"
Консоль
Логотип exploitDog

exploitDog

product: "moodle"
Moodle

Moodleсистема управления образовательными электронными курсами

Релизный цикл, информация об уязвимостях

Продукт: Moodle
Вендор: moodle

График релизов

4.14.24.34.44.55.02022202320242025202620272028

Недавние уязвимости Moodle

Количество 2 535

github логотип

GHSA-5p2x-8427-9fgp

больше 1 года назад

Moodle Improper Access Control vulnerability

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2024-1439

больше 1 года назад

Inadequate access control in Moodle LMS. This vulnerability could allow a local user with a student role to create arbitrary events intended for users with higher roles. It could also allow the attacker to add events to the calendar of all users without their prior consent.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2024-1439

больше 1 года назад

Inadequate access control in Moodle LMS. This vulnerability could allo ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2024-1439

больше 1 года назад

Inadequate access control in Moodle LMS. This vulnerability could allow a local user with a student role to create arbitrary events intended for users with higher roles. It could also allow the attacker to add events to the calendar of all users without their prior consent.

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2024-02981

больше 1 года назад

Уязвимость виртуальной обучающей среды Moodle, связанная с недостатками контроля доступа, позволяющая нарушителю с ролью student создавать произвольные события

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-p657-7739-2grh

почти 2 года назад

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2023-5543

почти 2 года назад

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

CVSS3: 3.3
EPSS: Низкий
debian логотип

CVE-2023-5543

почти 2 года назад

When duplicating a BigBlueButton activity, the original meeting ID was ...

CVSS3: 3.3
EPSS: Низкий
ubuntu логотип

CVE-2023-5543

почти 2 года назад

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-fm5h-58g2-4m3f

почти 2 года назад

Moodle Improper Access Control vulnerability

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-5p2x-8427-9fgp

Moodle Improper Access Control vulnerability

CVSS3: 6.5
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-1439

Inadequate access control in Moodle LMS. This vulnerability could allow a local user with a student role to create arbitrary events intended for users with higher roles. It could also allow the attacker to add events to the calendar of all users without their prior consent.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-1439

Inadequate access control in Moodle LMS. This vulnerability could allo ...

CVSS3: 6.5
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-1439

Inadequate access control in Moodle LMS. This vulnerability could allow a local user with a student role to create arbitrary events intended for users with higher roles. It could also allow the attacker to add events to the calendar of all users without their prior consent.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2024-02981

Уязвимость виртуальной обучающей среды Moodle, связанная с недостатками контроля доступа, позволяющая нарушителю с ролью student создавать произвольные события

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-p657-7739-2grh

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

CVSS3: 3.3
0%
Низкий
почти 2 года назад
nvd логотип
CVE-2023-5543

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

CVSS3: 3.3
0%
Низкий
почти 2 года назад
debian логотип
CVE-2023-5543

When duplicating a BigBlueButton activity, the original meeting ID was ...

CVSS3: 3.3
0%
Низкий
почти 2 года назад
ubuntu логотип
CVE-2023-5543

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

CVSS3: 3.3
0%
Низкий
почти 2 года назад
github логотип
GHSA-fm5h-58g2-4m3f

Moodle Improper Access Control vulnerability

CVSS3: 5.3
0%
Низкий
почти 2 года назад

Уязвимостей на страницу


Поделиться