Количество 6
Количество 6

CVE-2023-23921
The vulnerability was found Moodle which exists due to insufficient sanitization of user-supplied data in some returnurl parameters. A remote attacker can trick the victim to follow a specially crafted link and execute arbitrary HTML and script code in user's browser in context of vulnerable website. This flaw allows a remote attacker to perform cross-site scripting (XSS) attacks.

CVE-2023-23921
The vulnerability was found Moodle which exists due to insufficient sanitization of user-supplied data in some returnurl parameters. A remote attacker can trick the victim to follow a specially crafted link and execute arbitrary HTML and script code in user's browser in context of vulnerable website. This flaw allows a remote attacker to perform cross-site scripting (XSS) attacks.
CVE-2023-23921
The vulnerability was found Moodle which exists due to insufficient sa ...
GHSA-97qf-pq7x-964m
Moodle Cross-site Scripting vulnerability

BDU:2023-03478
Уязвимость виртуальной обучающей среды Moodle, существующая из-за непринятия мер по защите структуры веб-страницы, позволяющая нарушителю провести атаку межсайтового скриптинга (XSS)

ROS-20230627-01
Множественные уязвимости moodle
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2023-23921 The vulnerability was found Moodle which exists due to insufficient sanitization of user-supplied data in some returnurl parameters. A remote attacker can trick the victim to follow a specially crafted link and execute arbitrary HTML and script code in user's browser in context of vulnerable website. This flaw allows a remote attacker to perform cross-site scripting (XSS) attacks. | CVSS3: 6.1 | 0% Низкий | больше 2 лет назад |
![]() | CVE-2023-23921 The vulnerability was found Moodle which exists due to insufficient sanitization of user-supplied data in some returnurl parameters. A remote attacker can trick the victim to follow a specially crafted link and execute arbitrary HTML and script code in user's browser in context of vulnerable website. This flaw allows a remote attacker to perform cross-site scripting (XSS) attacks. | CVSS3: 6.1 | 0% Низкий | больше 2 лет назад |
CVE-2023-23921 The vulnerability was found Moodle which exists due to insufficient sa ... | CVSS3: 6.1 | 0% Низкий | больше 2 лет назад | |
GHSA-97qf-pq7x-964m Moodle Cross-site Scripting vulnerability | CVSS3: 6.1 | 0% Низкий | больше 2 лет назад | |
![]() | BDU:2023-03478 Уязвимость виртуальной обучающей среды Moodle, существующая из-за непринятия мер по защите структуры веб-страницы, позволяющая нарушителю провести атаку межсайтового скриптинга (XSS) | CVSS3: 6.1 | 0% Низкий | больше 2 лет назад |
![]() | ROS-20230627-01 Множественные уязвимости moodle | CVSS3: 9.8 | почти 2 года назад |
Уязвимостей на страницу