Логотип exploitDog
product: "moodle"
Консоль
Логотип exploitDog

exploitDog

product: "moodle"

Количество 2 647

Количество 2 647

github логотип

GHSA-3xxm-3g3c-w579

около 2 лет назад

Moodle Code Injection vulnerability

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-3jrj-x6cj-97cp

больше 3 лет назад

Moodle contains CSRF vulnerability

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-385f-vgq7-8hhx

больше 3 лет назад

Moodle No groups filtering in H5P activity attempts report

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-26fg-v32r-h663

около 2 лет назад

Moodle Exposure of Sensitive Information to an Unauthorized Actor vulnerability

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-22gj-8qj2-fj46

почти 3 года назад

Moodle External Control of File Name or Path vulnerability

CVSS3: 5.3
EPSS: Средний
ubuntu логотип

CVE-2023-5551

около 2 лет назад

Separate Groups mode restrictions were not honoured in the forum summary report, which would display users from other groups.

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2023-5551

около 2 лет назад

Separate Groups mode restrictions were not honoured in the forum summary report, which would display users from other groups.

CVSS3: 3.3
EPSS: Низкий
debian логотип

CVE-2023-5551

около 2 лет назад

Separate Groups mode restrictions were not honoured in the forum summa ...

CVSS3: 3.3
EPSS: Низкий
ubuntu логотип

CVE-2023-5550

около 2 лет назад

In a shared hosting environment that has been misconfigured to allow access to other users' content, a Moodle user who also has direct access to the web server outside of the Moodle webroot could utilise a local file include to achieve remote code execution.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2023-5550

около 2 лет назад

In a shared hosting environment that has been misconfigured to allow access to other users' content, a Moodle user who also has direct access to the web server outside of the Moodle webroot could utilise a local file include to achieve remote code execution.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2023-5550

около 2 лет назад

In a shared hosting environment that has been misconfigured to allow a ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2023-5549

около 2 лет назад

Insufficient web service capability checks made it possible to move categories a user had permission to manage, to a parent category they did not have the capability to manage.

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2023-5549

около 2 лет назад

Insufficient web service capability checks made it possible to move categories a user had permission to manage, to a parent category they did not have the capability to manage.

CVSS3: 3.3
EPSS: Низкий
debian логотип

CVE-2023-5549

около 2 лет назад

Insufficient web service capability checks made it possible to move ca ...

CVSS3: 3.3
EPSS: Низкий
ubuntu логотип

CVE-2023-5548

около 2 лет назад

Stronger revision number limitations were required on file serving endpoints to improve cache poisoning protection.

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2023-5548

около 2 лет назад

Stronger revision number limitations were required on file serving endpoints to improve cache poisoning protection.

CVSS3: 3.3
EPSS: Низкий
debian логотип

CVE-2023-5548

около 2 лет назад

Stronger revision number limitations were required on file serving end ...

CVSS3: 3.3
EPSS: Низкий
ubuntu логотип

CVE-2023-5545

около 2 лет назад

H5P metadata automatically populated the author with the user's username, which could be sensitive information.

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2023-5545

около 2 лет назад

H5P metadata automatically populated the author with the user's username, which could be sensitive information.

CVSS3: 3.3
EPSS: Низкий
debian логотип

CVE-2023-5545

около 2 лет назад

H5P metadata automatically populated the author with the user's userna ...

CVSS3: 3.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3xxm-3g3c-w579

Moodle Code Injection vulnerability

CVSS3: 4.7
2%
Низкий
около 2 лет назад
github логотип
GHSA-3jrj-x6cj-97cp

Moodle contains CSRF vulnerability

CVSS3: 8.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-385f-vgq7-8hhx

Moodle No groups filtering in H5P activity attempts report

CVSS3: 4.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-26fg-v32r-h663

Moodle Exposure of Sensitive Information to an Unauthorized Actor vulnerability

CVSS3: 5.3
0%
Низкий
около 2 лет назад
github логотип
GHSA-22gj-8qj2-fj46

Moodle External Control of File Name or Path vulnerability

CVSS3: 5.3
18%
Средний
почти 3 года назад
ubuntu логотип
CVE-2023-5551

Separate Groups mode restrictions were not honoured in the forum summary report, which would display users from other groups.

CVSS3: 3.3
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-5551

Separate Groups mode restrictions were not honoured in the forum summary report, which would display users from other groups.

CVSS3: 3.3
0%
Низкий
около 2 лет назад
debian логотип
CVE-2023-5551

Separate Groups mode restrictions were not honoured in the forum summa ...

CVSS3: 3.3
0%
Низкий
около 2 лет назад
ubuntu логотип
CVE-2023-5550

In a shared hosting environment that has been misconfigured to allow access to other users' content, a Moodle user who also has direct access to the web server outside of the Moodle webroot could utilise a local file include to achieve remote code execution.

CVSS3: 6.5
1%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-5550

In a shared hosting environment that has been misconfigured to allow access to other users' content, a Moodle user who also has direct access to the web server outside of the Moodle webroot could utilise a local file include to achieve remote code execution.

CVSS3: 6.5
1%
Низкий
около 2 лет назад
debian логотип
CVE-2023-5550

In a shared hosting environment that has been misconfigured to allow a ...

CVSS3: 6.5
1%
Низкий
около 2 лет назад
ubuntu логотип
CVE-2023-5549

Insufficient web service capability checks made it possible to move categories a user had permission to manage, to a parent category they did not have the capability to manage.

CVSS3: 3.3
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-5549

Insufficient web service capability checks made it possible to move categories a user had permission to manage, to a parent category they did not have the capability to manage.

CVSS3: 3.3
0%
Низкий
около 2 лет назад
debian логотип
CVE-2023-5549

Insufficient web service capability checks made it possible to move ca ...

CVSS3: 3.3
0%
Низкий
около 2 лет назад
ubuntu логотип
CVE-2023-5548

Stronger revision number limitations were required on file serving endpoints to improve cache poisoning protection.

CVSS3: 3.3
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-5548

Stronger revision number limitations were required on file serving endpoints to improve cache poisoning protection.

CVSS3: 3.3
0%
Низкий
около 2 лет назад
debian логотип
CVE-2023-5548

Stronger revision number limitations were required on file serving end ...

CVSS3: 3.3
0%
Низкий
около 2 лет назад
ubuntu логотип
CVE-2023-5545

H5P metadata automatically populated the author with the user's username, which could be sensitive information.

CVSS3: 3.3
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-5545

H5P metadata automatically populated the author with the user's username, which could be sensitive information.

CVSS3: 3.3
0%
Низкий
около 2 лет назад
debian логотип
CVE-2023-5545

H5P metadata automatically populated the author with the user's userna ...

CVSS3: 3.3
0%
Низкий
около 2 лет назад

Уязвимостей на страницу