Moodle — система управления образовательными электронными курсами
Релизный цикл, информация об уязвимостях
График релизов
Количество 2 712
GHSA-332g-xh34-5c96
Moodle Privilege escalation in quiz web services
GHSA-595j-wpfg-23w4
Moodle XSS Vulnerability
GHSA-4m6v-x9fj-847j
Moodle Cross-site Scripting in the Course summary filter of the Add a new course
GHSA-vxmv-74rf-vqgp
Moodle Portfolio forum caller class allows a user to download any file
GHSA-vxqh-mx28-7ghw
Moodle Portfolio script allows instantiation of class chosen by user
GHSA-m38p-4c43-vjrc
SQL injection vulnerability in the hotpot_delete_selected_attempts function in report.php in the HotPot module in Moodle 1.6 before 1.6.7, 1.7 before 1.7.5, 1.8 before 1.8.6, and 1.9 before 1.9.2 allows remote attackers to execute arbitrary SQL commands via a crafted selected attempt.
GHSA-w4f8-f35q-x83j
Unspecified vulnerability in the user editing interface in Moodle 1.5.x, 1.6 before 1.6.6, and 1.7 before 1.7.3 allows remote authenticated users to gain privileges via unknown vectors.
GHSA-vjxx-54vw-q59f
Moodle SSRF Vulnerability
GHSA-qqjv-mc2v-p7mc
Moodle SSRF Vulnerability
GHSA-xhfw-wjjc-4j5h
Moodle Cross-site Scripting
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-332g-xh34-5c96 Moodle Privilege escalation in quiz web services | CVSS3: 4.3 | 1% Низкий | около 4 лет назад | |
GHSA-595j-wpfg-23w4 Moodle XSS Vulnerability | CVSS3: 5.4 | 1% Низкий | около 4 лет назад | |
GHSA-4m6v-x9fj-847j Moodle Cross-site Scripting in the Course summary filter of the Add a new course | CVSS3: 5.4 | 1% Низкий | около 4 лет назад | |
GHSA-vxmv-74rf-vqgp Moodle Portfolio forum caller class allows a user to download any file | CVSS3: 6.5 | 1% Низкий | около 4 лет назад | |
GHSA-vxqh-mx28-7ghw Moodle Portfolio script allows instantiation of class chosen by user | CVSS3: 8.1 | 2% Низкий | около 4 лет назад | |
GHSA-m38p-4c43-vjrc SQL injection vulnerability in the hotpot_delete_selected_attempts function in report.php in the HotPot module in Moodle 1.6 before 1.6.7, 1.7 before 1.7.5, 1.8 before 1.8.6, and 1.9 before 1.9.2 allows remote attackers to execute arbitrary SQL commands via a crafted selected attempt. | 1% Низкий | около 4 лет назад | ||
GHSA-w4f8-f35q-x83j Unspecified vulnerability in the user editing interface in Moodle 1.5.x, 1.6 before 1.6.6, and 1.7 before 1.7.3 allows remote authenticated users to gain privileges via unknown vectors. | 2% Низкий | около 4 лет назад | ||
GHSA-vjxx-54vw-q59f Moodle SSRF Vulnerability | CVSS3: 7.5 | 1% Низкий | около 4 лет назад | |
GHSA-qqjv-mc2v-p7mc Moodle SSRF Vulnerability | CVSS3: 6.5 | 16% Средний | около 4 лет назад | |
GHSA-xhfw-wjjc-4j5h Moodle Cross-site Scripting | CVSS3: 4.3 | 1% Низкий | около 4 лет назад |
Уязвимостей на страницу