Логотип exploitDog
product: "moodle"
Консоль
Логотип exploitDog

exploitDog

product: "moodle"
Moodle

Moodleсистема управления образовательными электронными курсами

Релизный цикл, информация об уязвимостях

Продукт: Moodle
Вендор: moodle

График релизов

4.55.05.120242025202620272028

Недавние уязвимости Moodle

Количество 2 647

ubuntu логотип

CVE-2024-25979

почти 2 года назад

The URL parameters accepted by forum search were not limited to the allowed parameters.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-5p2x-8427-9fgp

почти 2 года назад

Moodle Improper Access Control vulnerability

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2024-1439

почти 2 года назад

Inadequate access control in Moodle LMS. This vulnerability could allow a local user with a student role to create arbitrary events intended for users with higher roles. It could also allow the attacker to add events to the calendar of all users without their prior consent.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2024-1439

почти 2 года назад

Inadequate access control in Moodle LMS. This vulnerability could allo ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2024-1439

почти 2 года назад

Inadequate access control in Moodle LMS. This vulnerability could allow a local user with a student role to create arbitrary events intended for users with higher roles. It could also allow the attacker to add events to the calendar of all users without their prior consent.

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2024-02981

почти 2 года назад

Уязвимость виртуальной обучающей среды Moodle, связанная с недостатками контроля доступа, позволяющая нарушителю с ролью student создавать произвольные события

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-p657-7739-2grh

больше 2 лет назад

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2023-5543

больше 2 лет назад

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

CVSS3: 3.3
EPSS: Низкий
debian логотип

CVE-2023-5543

больше 2 лет назад

When duplicating a BigBlueButton activity, the original meeting ID was ...

CVSS3: 3.3
EPSS: Низкий
ubuntu логотип

CVE-2023-5543

больше 2 лет назад

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

CVSS3: 3.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
ubuntu логотип
CVE-2024-25979

The URL parameters accepted by forum search were not limited to the allowed parameters.

CVSS3: 5.3
0%
Низкий
почти 2 года назад
github логотип
GHSA-5p2x-8427-9fgp

Moodle Improper Access Control vulnerability

CVSS3: 6.5
0%
Низкий
почти 2 года назад
nvd логотип
CVE-2024-1439

Inadequate access control in Moodle LMS. This vulnerability could allow a local user with a student role to create arbitrary events intended for users with higher roles. It could also allow the attacker to add events to the calendar of all users without their prior consent.

CVSS3: 6.5
0%
Низкий
почти 2 года назад
debian логотип
CVE-2024-1439

Inadequate access control in Moodle LMS. This vulnerability could allo ...

CVSS3: 6.5
0%
Низкий
почти 2 года назад
ubuntu логотип
CVE-2024-1439

Inadequate access control in Moodle LMS. This vulnerability could allow a local user with a student role to create arbitrary events intended for users with higher roles. It could also allow the attacker to add events to the calendar of all users without their prior consent.

CVSS3: 6.5
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2024-02981

Уязвимость виртуальной обучающей среды Moodle, связанная с недостатками контроля доступа, позволяющая нарушителю с ролью student создавать произвольные события

CVSS3: 6.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-p657-7739-2grh

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

CVSS3: 3.3
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-5543

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

CVSS3: 3.3
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-5543

When duplicating a BigBlueButton activity, the original meeting ID was ...

CVSS3: 3.3
0%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2023-5543

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

CVSS3: 3.3
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу


Поделиться