Moodle — система управления образовательными электронными курсами
Релизный цикл, информация об уязвимостях
График релизов
Количество 2 541
GHSA-332g-xh34-5c96
Moodle Privilege escalation in quiz web services
GHSA-595j-wpfg-23w4
Moodle XSS Vulnerability
GHSA-4m6v-x9fj-847j
Moodle Cross-site Scripting in the Course summary filter of the Add a new course
GHSA-vxmv-74rf-vqgp
Moodle Portfolio forum caller class allows a user to download any file
GHSA-vxqh-mx28-7ghw
Moodle Portfolio script allows instantiation of class chosen by user
GHSA-w4f8-f35q-x83j
Unspecified vulnerability in the user editing interface in Moodle 1.5.x, 1.6 before 1.6.6, and 1.7 before 1.7.3 allows remote authenticated users to gain privileges via unknown vectors.
GHSA-m38p-4c43-vjrc
SQL injection vulnerability in the hotpot_delete_selected_attempts function in report.php in the HotPot module in Moodle 1.6 before 1.6.7, 1.7 before 1.7.5, 1.8 before 1.8.6, and 1.9 before 1.9.2 allows remote attackers to execute arbitrary SQL commands via a crafted selected attempt.
GHSA-vjxx-54vw-q59f
Moodle SSRF Vulnerability
GHSA-qqjv-mc2v-p7mc
Moodle SSRF Vulnerability
GHSA-xhfw-wjjc-4j5h
Moodle Cross-site Scripting
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-332g-xh34-5c96 Moodle Privilege escalation in quiz web services | CVSS3: 4.3 | 0% Низкий | больше 3 лет назад | |
GHSA-595j-wpfg-23w4 Moodle XSS Vulnerability | CVSS3: 5.4 | 0% Низкий | больше 3 лет назад | |
GHSA-4m6v-x9fj-847j Moodle Cross-site Scripting in the Course summary filter of the Add a new course | CVSS3: 5.4 | 0% Низкий | больше 3 лет назад | |
GHSA-vxmv-74rf-vqgp Moodle Portfolio forum caller class allows a user to download any file | CVSS3: 6.5 | 0% Низкий | больше 3 лет назад | |
GHSA-vxqh-mx28-7ghw Moodle Portfolio script allows instantiation of class chosen by user | CVSS3: 8.1 | 0% Низкий | больше 3 лет назад | |
GHSA-w4f8-f35q-x83j Unspecified vulnerability in the user editing interface in Moodle 1.5.x, 1.6 before 1.6.6, and 1.7 before 1.7.3 allows remote authenticated users to gain privileges via unknown vectors. | 0% Низкий | больше 3 лет назад | ||
GHSA-m38p-4c43-vjrc SQL injection vulnerability in the hotpot_delete_selected_attempts function in report.php in the HotPot module in Moodle 1.6 before 1.6.7, 1.7 before 1.7.5, 1.8 before 1.8.6, and 1.9 before 1.9.2 allows remote attackers to execute arbitrary SQL commands via a crafted selected attempt. | 0% Низкий | больше 3 лет назад | ||
GHSA-vjxx-54vw-q59f Moodle SSRF Vulnerability | CVSS3: 7.5 | 0% Низкий | больше 3 лет назад | |
GHSA-qqjv-mc2v-p7mc Moodle SSRF Vulnerability | CVSS3: 6.5 | 19% Средний | больше 3 лет назад | |
GHSA-xhfw-wjjc-4j5h Moodle Cross-site Scripting | CVSS3: 4.3 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу