Количество 2 712
Количество 2 712
GHSA-jgqm-9mm3-4p7g
Cross-site request forgery (CSRF) vulnerability in Moodle 1.6.x before 1.6.7 and 1.7.x before 1.7.5 allows remote attackers to modify profile settings and gain privileges as other users via a link or IMG tag to the user edit profile page.
GHSA-jg4f-8w9x-jv35
Moodle Authenticated LFI risk in some misconfigured shared hosting environments
GHSA-jfrg-9hpq-9hvp
Improper Access Control in moodle
GHSA-jcrj-x36p-h9f6
Moodle Open Redirect in Calendar Set Page
GHSA-jcrj-gmr6-p5j8
Moodle Allows Modification of Constants
GHSA-j9cw-5cpj-9qj5
Moodle has a Hidden Functionality vulnerability
GHSA-j98x-965h-9v2h
Moodle before 2.2.2 has an external enrolment plugin context check issue where capability checks are not thorough
GHSA-j8wr-7xxj-c2fr
Moodle Private files uploaded via incoming mail processing could bypass quota restrictions
GHSA-j822-x5gg-5r56
Moodle allows users to retrieve information they did not have permission to access
GHSA-j5xf-gv89-g422
Moodle Cross-site Scripting vulnerability
GHSA-j5rc-cr5w-vfg6
Moodle Session Fixation vulnerability
GHSA-j5jv-w5cw-j9ff
Moodle authentication bypass vulnerability
GHSA-j4mr-vc54-h5pc
Moodle cross-site scripting (XSS) vulnerability
GHSA-j465-7mp6-3xg3
Moodle places a session key in a URL
GHSA-j3x5-cwfj-pfcw
Moodle does not force password changes for autosubscribed users
GHSA-hxvf-5p7c-7g55
lib/formslib.php in Moodle 2.2.x before 2.2.6 and 2.3.x before 2.3.3 allows remote authenticated users to bypass intended access restrictions via a modified value of a frozen form field.
GHSA-hxmp-8f47-x9fc
Moodle Open Redirect Via Error Messages
GHSA-hxgg-4qww-85ph
Moodle has reflected Cross-site Scripting risk in policy tool
GHSA-hwjw-22qj-gpvc
Moodle before 2.2.2: Course information leak via hidden courses being displayed in tag search results
GHSA-hwjv-mc78-cccj
Moodle multiple cross-site scripting (XSS) vulnerabilities
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-jgqm-9mm3-4p7g Cross-site request forgery (CSRF) vulnerability in Moodle 1.6.x before 1.6.7 and 1.7.x before 1.7.5 allows remote attackers to modify profile settings and gain privileges as other users via a link or IMG tag to the user edit profile page. | 1% Низкий | около 4 лет назад | ||
GHSA-jg4f-8w9x-jv35 Moodle Authenticated LFI risk in some misconfigured shared hosting environments | CVSS3: 5.9 | 0% Низкий | около 2 лет назад | |
GHSA-jfrg-9hpq-9hvp Improper Access Control in moodle | CVSS3: 5.3 | 1% Низкий | больше 2 лет назад | |
GHSA-jcrj-x36p-h9f6 Moodle Open Redirect in Calendar Set Page | 1% Низкий | около 4 лет назад | ||
GHSA-jcrj-gmr6-p5j8 Moodle Allows Modification of Constants | 2% Низкий | около 4 лет назад | ||
GHSA-j9cw-5cpj-9qj5 Moodle has a Hidden Functionality vulnerability | CVSS3: 5.3 | 1% Низкий | больше 3 лет назад | |
GHSA-j98x-965h-9v2h Moodle before 2.2.2 has an external enrolment plugin context check issue where capability checks are not thorough | 1% Низкий | больше 4 лет назад | ||
GHSA-j8wr-7xxj-c2fr Moodle Private files uploaded via incoming mail processing could bypass quota restrictions | CVSS3: 4.2 | 1% Низкий | около 4 лет назад | |
GHSA-j822-x5gg-5r56 Moodle allows users to retrieve information they did not have permission to access | CVSS3: 6.5 | 0% Низкий | больше 1 года назад | |
GHSA-j5xf-gv89-g422 Moodle Cross-site Scripting vulnerability | CVSS3: 5.4 | 1% Низкий | больше 2 лет назад | |
GHSA-j5rc-cr5w-vfg6 Moodle Session Fixation vulnerability | 2% Низкий | около 4 лет назад | ||
GHSA-j5jv-w5cw-j9ff Moodle authentication bypass vulnerability | CVSS3: 8.1 | 0% Низкий | 6 месяцев назад | |
GHSA-j4mr-vc54-h5pc Moodle cross-site scripting (XSS) vulnerability | 1% Низкий | около 4 лет назад | ||
GHSA-j465-7mp6-3xg3 Moodle places a session key in a URL | 2% Низкий | около 4 лет назад | ||
GHSA-j3x5-cwfj-pfcw Moodle does not force password changes for autosubscribed users | 2% Низкий | около 4 лет назад | ||
GHSA-hxvf-5p7c-7g55 lib/formslib.php in Moodle 2.2.x before 2.2.6 and 2.3.x before 2.3.3 allows remote authenticated users to bypass intended access restrictions via a modified value of a frozen form field. | 1% Низкий | около 4 лет назад | ||
GHSA-hxmp-8f47-x9fc Moodle Open Redirect Via Error Messages | 2% Низкий | около 4 лет назад | ||
GHSA-hxgg-4qww-85ph Moodle has reflected Cross-site Scripting risk in policy tool | CVSS3: 5.4 | 0% Низкий | больше 1 года назад | |
GHSA-hwjw-22qj-gpvc Moodle before 2.2.2: Course information leak via hidden courses being displayed in tag search results | 1% Низкий | больше 4 лет назад | ||
GHSA-hwjv-mc78-cccj Moodle multiple cross-site scripting (XSS) vulnerabilities | 1% Низкий | около 4 лет назад |
Уязвимостей на страницу