Логотип exploitDog
bind: "CVE-2022-35653"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2022-35653"

Количество 6

Количество 6

ubuntu логотип

CVE-2022-35653

почти 3 года назад

A reflected XSS issue was identified in the LTI module of Moodle. The vulnerability exists due to insufficient sanitization of user-supplied data in the LTI module. A remote attacker can trick the victim to follow a specially crafted link and execute arbitrary HTML and script code in user's browser in context of vulnerable website to steal potentially sensitive information, change appearance of the web page, can perform phishing and drive-by-download attacks. This vulnerability does not impact authenticated users.

CVSS3: 6.1
EPSS: Высокий
nvd логотип

CVE-2022-35653

почти 3 года назад

A reflected XSS issue was identified in the LTI module of Moodle. The vulnerability exists due to insufficient sanitization of user-supplied data in the LTI module. A remote attacker can trick the victim to follow a specially crafted link and execute arbitrary HTML and script code in user's browser in context of vulnerable website to steal potentially sensitive information, change appearance of the web page, can perform phishing and drive-by-download attacks. This vulnerability does not impact authenticated users.

CVSS3: 6.1
EPSS: Высокий
debian логотип

CVE-2022-35653

почти 3 года назад

A reflected XSS issue was identified in the LTI module of Moodle. The ...

CVSS3: 6.1
EPSS: Высокий
github логотип

GHSA-62wh-m4jr-233r

почти 3 года назад

Moodle LTI module reflected XSS risk

CVSS3: 6.1
EPSS: Высокий
fstec логотип

BDU:2022-04908

почти 3 года назад

Уязвимость модуля LTI виртуальной обучающей среды Moodle, позволяющая нарушителю проводить фишинговые атаки или раскрыть защищаемую информацию

CVSS3: 6.1
EPSS: Высокий
redos логотип

ROS-20221013-02

больше 2 лет назад

Множественные уязвимости Moodle

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-35653

A reflected XSS issue was identified in the LTI module of Moodle. The vulnerability exists due to insufficient sanitization of user-supplied data in the LTI module. A remote attacker can trick the victim to follow a specially crafted link and execute arbitrary HTML and script code in user's browser in context of vulnerable website to steal potentially sensitive information, change appearance of the web page, can perform phishing and drive-by-download attacks. This vulnerability does not impact authenticated users.

CVSS3: 6.1
73%
Высокий
почти 3 года назад
nvd логотип
CVE-2022-35653

A reflected XSS issue was identified in the LTI module of Moodle. The vulnerability exists due to insufficient sanitization of user-supplied data in the LTI module. A remote attacker can trick the victim to follow a specially crafted link and execute arbitrary HTML and script code in user's browser in context of vulnerable website to steal potentially sensitive information, change appearance of the web page, can perform phishing and drive-by-download attacks. This vulnerability does not impact authenticated users.

CVSS3: 6.1
73%
Высокий
почти 3 года назад
debian логотип
CVE-2022-35653

A reflected XSS issue was identified in the LTI module of Moodle. The ...

CVSS3: 6.1
73%
Высокий
почти 3 года назад
github логотип
GHSA-62wh-m4jr-233r

Moodle LTI module reflected XSS risk

CVSS3: 6.1
73%
Высокий
почти 3 года назад
fstec логотип
BDU:2022-04908

Уязвимость модуля LTI виртуальной обучающей среды Moodle, позволяющая нарушителю проводить фишинговые атаки или раскрыть защищаемую информацию

CVSS3: 6.1
73%
Высокий
почти 3 года назад
redos логотип
ROS-20221013-02

Множественные уязвимости Moodle

CVSS3: 9.8
больше 2 лет назад

Уязвимостей на страницу