Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Moodle

Moodleсистема управления образовательными электронными курсами

Релизный цикл, информация об уязвимостях

Продукт: Moodle
Вендор: moodle

График релизов

4.55.05.15.220242025202620272028

Недавние уязвимости Moodle

Количество 2 712

github логотип

GHSA-h6px-pvfh-q2jv

около 4 лет назад

Moodle vulnerable to Cross-Site Scripting

EPSS: Низкий
github логотип

GHSA-jcrj-x36p-h9f6

около 4 лет назад

Moodle Open Redirect in Calendar Set Page

EPSS: Низкий
github логотип

GHSA-62wv-866c-rh86

около 4 лет назад

Moodle does not properly restrict comment capabilities

EPSS: Низкий
github логотип

GHSA-cj27-r58c-6p6v

около 4 лет назад

Cross-site scripting (XSS) vulnerability in mod/wiki/lang/en/wiki.php in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote attackers to inject arbitrary web script or HTML via the section parameter.

EPSS: Низкий
github логотип

GHSA-g6cp-x8gq-65wc

около 4 лет назад

Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote attackers to bypass intended access restrictions and perform global searches by leveraging the guest role and making a direct request to a URL.

EPSS: Низкий
github логотип

GHSA-4jc7-gpxx-gg52

около 4 лет назад

The chat functionality in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote authenticated users to discover the name of any user via a beep operation.

EPSS: Низкий
github логотип

GHSA-79w6-7hhc-89m9

около 4 лет назад

mod/wiki/pagelib.php in Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3 allows remote authenticated users to discover the username of a wiki creator by visiting the history and deletion user interface.

EPSS: Низкий
github логотип

GHSA-6rm3-82c3-gjr8

около 4 лет назад

lib/db/access.php in Moodle 2.0.x before 2.0.4 and 2.1.x before 2.1.1 assigns incorrect capabilities to the course-creator role, which allows remote authenticated users to modify course filters by leveraging this role.

EPSS: Низкий
github логотип

GHSA-wxvp-8q8h-r6rr

около 4 лет назад

Moodle Double-Caches Content, Potentially Writing to a File System's Tmp Directory

EPSS: Низкий
github логотип

GHSA-8hxm-42v5-66hm

около 4 лет назад

Moodle vulnerable to Cross-Site Request Forgery

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-h6px-pvfh-q2jv

Moodle vulnerable to Cross-Site Scripting

1%
Низкий
около 4 лет назад
github логотип
GHSA-jcrj-x36p-h9f6

Moodle Open Redirect in Calendar Set Page

1%
Низкий
около 4 лет назад
github логотип
GHSA-62wv-866c-rh86

Moodle does not properly restrict comment capabilities

2%
Низкий
около 4 лет назад
github логотип
GHSA-cj27-r58c-6p6v

Cross-site scripting (XSS) vulnerability in mod/wiki/lang/en/wiki.php in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote attackers to inject arbitrary web script or HTML via the section parameter.

1%
Низкий
около 4 лет назад
github логотип
GHSA-g6cp-x8gq-65wc

Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote attackers to bypass intended access restrictions and perform global searches by leveraging the guest role and making a direct request to a URL.

1%
Низкий
около 4 лет назад
github логотип
GHSA-4jc7-gpxx-gg52

The chat functionality in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote authenticated users to discover the name of any user via a beep operation.

2%
Низкий
около 4 лет назад
github логотип
GHSA-79w6-7hhc-89m9

mod/wiki/pagelib.php in Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3 allows remote authenticated users to discover the username of a wiki creator by visiting the history and deletion user interface.

1%
Низкий
около 4 лет назад
github логотип
GHSA-6rm3-82c3-gjr8

lib/db/access.php in Moodle 2.0.x before 2.0.4 and 2.1.x before 2.1.1 assigns incorrect capabilities to the course-creator role, which allows remote authenticated users to modify course filters by leveraging this role.

1%
Низкий
около 4 лет назад
github логотип
GHSA-wxvp-8q8h-r6rr

Moodle Double-Caches Content, Potentially Writing to a File System's Tmp Directory

2%
Низкий
около 4 лет назад
github логотип
GHSA-8hxm-42v5-66hm

Moodle vulnerable to Cross-Site Request Forgery

1%
Низкий
около 4 лет назад

Уязвимостей на страницу


Поделиться