Логотип exploitDog
product: "moodle"
Консоль
Логотип exploitDog

exploitDog

product: "moodle"

Количество 2 470

Количество 2 470

nvd логотип

CVE-2016-5014

больше 8 лет назад

In Moodle 2.x and 3.x, an unenrolled user still receives event monitor notifications even though they can no longer access the course.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2016-5014

больше 8 лет назад

In Moodle 2.x and 3.x, an unenrolled user still receives event monitor ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2016-5013

больше 8 лет назад

In Moodle 2.x and 3.x, text injection can occur in email headers, potentially leading to outbound spam.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2016-5013

больше 8 лет назад

In Moodle 2.x and 3.x, text injection can occur in email headers, potentially leading to outbound spam.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2016-5013

больше 8 лет назад

In Moodle 2.x and 3.x, text injection can occur in email headers, pote ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2016-5012

больше 8 лет назад

In Moodle 3.x, glossary search displays entries without checking user permissions to view them.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2016-5012

больше 8 лет назад

In Moodle 3.x, glossary search displays entries without checking user permissions to view them.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2016-5012

больше 8 лет назад

In Moodle 3.x, glossary search displays entries without checking user ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2016-3734

около 8 лет назад

Cross-site request forgery (CSRF) vulnerability in markposts.php in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13 and earlier allows remote attackers to hijack the authentication of users for requests that marks forum posts as read.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2016-3734

около 8 лет назад

Cross-site request forgery (CSRF) vulnerability in markposts.php in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13 and earlier allows remote attackers to hijack the authentication of users for requests that marks forum posts as read.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-3734

около 8 лет назад

Cross-site request forgery (CSRF) vulnerability in markposts.php in Mo ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2016-3733

около 8 лет назад

The "restore teacher" feature in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to overwrite the course idnumber.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2016-3733

около 8 лет назад

The "restore teacher" feature in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to overwrite the course idnumber.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2016-3733

около 8 лет назад

The "restore teacher" feature in Moodle 3.0 through 3.0.3, 2.9 through ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2016-3732

около 8 лет назад

The capability check to access other badges in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to read the badges of other users.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2016-3732

около 8 лет назад

The capability check to access other badges in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to read the badges of other users.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2016-3732

около 8 лет назад

The capability check to access other badges in Moodle 3.0 through 3.0. ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2016-3731

около 8 лет назад

Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, and 2.8 through 2.8.11 allows remote attackers to obtain the names of hidden forums and forum discussions.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2016-3731

около 8 лет назад

Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, and 2.8 through 2.8.11 allows remote attackers to obtain the names of hidden forums and forum discussions.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2016-3731

около 8 лет назад

Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, and 2.8 through 2.8.11 al ...

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2016-5014

In Moodle 2.x and 3.x, an unenrolled user still receives event monitor notifications even though they can no longer access the course.

CVSS3: 5.4
0%
Низкий
больше 8 лет назад
debian логотип
CVE-2016-5014

In Moodle 2.x and 3.x, an unenrolled user still receives event monitor ...

CVSS3: 5.4
0%
Низкий
больше 8 лет назад
ubuntu логотип
CVE-2016-5013

In Moodle 2.x and 3.x, text injection can occur in email headers, potentially leading to outbound spam.

CVSS3: 5.4
0%
Низкий
больше 8 лет назад
nvd логотип
CVE-2016-5013

In Moodle 2.x and 3.x, text injection can occur in email headers, potentially leading to outbound spam.

CVSS3: 5.4
0%
Низкий
больше 8 лет назад
debian логотип
CVE-2016-5013

In Moodle 2.x and 3.x, text injection can occur in email headers, pote ...

CVSS3: 5.4
0%
Низкий
больше 8 лет назад
ubuntu логотип
CVE-2016-5012

In Moodle 3.x, glossary search displays entries without checking user permissions to view them.

CVSS3: 5.3
0%
Низкий
больше 8 лет назад
nvd логотип
CVE-2016-5012

In Moodle 3.x, glossary search displays entries without checking user permissions to view them.

CVSS3: 5.3
0%
Низкий
больше 8 лет назад
debian логотип
CVE-2016-5012

In Moodle 3.x, glossary search displays entries without checking user ...

CVSS3: 5.3
0%
Низкий
больше 8 лет назад
ubuntu логотип
CVE-2016-3734

Cross-site request forgery (CSRF) vulnerability in markposts.php in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13 and earlier allows remote attackers to hijack the authentication of users for requests that marks forum posts as read.

CVSS3: 8.8
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2016-3734

Cross-site request forgery (CSRF) vulnerability in markposts.php in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13 and earlier allows remote attackers to hijack the authentication of users for requests that marks forum posts as read.

CVSS3: 8.8
0%
Низкий
около 8 лет назад
debian логотип
CVE-2016-3734

Cross-site request forgery (CSRF) vulnerability in markposts.php in Mo ...

CVSS3: 8.8
0%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2016-3733

The "restore teacher" feature in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to overwrite the course idnumber.

CVSS3: 4.3
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2016-3733

The "restore teacher" feature in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to overwrite the course idnumber.

CVSS3: 4.3
0%
Низкий
около 8 лет назад
debian логотип
CVE-2016-3733

The "restore teacher" feature in Moodle 3.0 through 3.0.3, 2.9 through ...

CVSS3: 4.3
0%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2016-3732

The capability check to access other badges in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to read the badges of other users.

CVSS3: 4.3
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2016-3732

The capability check to access other badges in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to read the badges of other users.

CVSS3: 4.3
0%
Низкий
около 8 лет назад
debian логотип
CVE-2016-3732

The capability check to access other badges in Moodle 3.0 through 3.0. ...

CVSS3: 4.3
0%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2016-3731

Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, and 2.8 through 2.8.11 allows remote attackers to obtain the names of hidden forums and forum discussions.

CVSS3: 5.3
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2016-3731

Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, and 2.8 through 2.8.11 allows remote attackers to obtain the names of hidden forums and forum discussions.

CVSS3: 5.3
0%
Низкий
около 8 лет назад
debian логотип
CVE-2016-3731

Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, and 2.8 through 2.8.11 al ...

CVSS3: 5.3
0%
Низкий
около 8 лет назад

Уязвимостей на страницу