Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 2 712

Количество 2 712

github логотип

GHSA-cp39-43xr-2wrp

около 4 лет назад

Moodle XSS Vulnerability

EPSS: Низкий
github логотип

GHSA-cm4r-58pj-h2ph

около 4 лет назад

Moodle allows attackers to extract archives to arbitrary directories

EPSS: Низкий
github логотип

GHSA-cjrf-xg77-chpw

около 4 лет назад

Moodle Incorrect sanitation of attributes in forums

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-cj27-r58c-6p6v

около 4 лет назад

Cross-site scripting (XSS) vulnerability in mod/wiki/lang/en/wiki.php in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote attackers to inject arbitrary web script or HTML via the section parameter.

EPSS: Низкий
github логотип

GHSA-chmf-m33p-ph8m

больше 1 года назад

Moodle allows IDOR in RSS block, which allows access to additional RSS feeds

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-ch68-5r37-p7c3

около 4 лет назад

Moodle cross-site scripting (XSS) vulnerability

EPSS: Низкий
github логотип

GHSA-cgvv-3455-824j

около 1 года назад

Moodle Session Fixation allows unauthenticated users to hijack sessions via sesskey parameter

CVSS3: 4.2
EPSS: Низкий
github логотип

GHSA-cg8j-5cr2-568q

5 месяцев назад

Moodle TeX formula editor is vulnerable to DoS through lack of execution time limits

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-cfc8-jvc8-5w3f

около 4 лет назад

SQL injection vulnerability in mod/feedback/complete.php in Moodle 2.0.x before 2.0.10, 2.1.x before 2.1.7, and 2.2.x before 2.2.4 allows remote authenticated users to execute arbitrary SQL commands via crafted form data.

EPSS: Низкий
github логотип

GHSA-ccwc-3v75-qp35

больше 4 лет назад

Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the user password is reset if not specified.

EPSS: Низкий
github логотип

GHSA-cc94-hwj3-rf65

около 4 лет назад

Moodle's login_as feature leaks information from external repositories

EPSS: Низкий
github логотип

GHSA-c9jp-244j-vh78

около 4 лет назад

Moodle cross-site scripting (XSS) vulnerability

EPSS: Низкий
github логотип

GHSA-c9hq-g4q8-w893

больше 5 лет назад

Privilage Escalation in moodle

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-c8v6-vxhf-wcrr

больше 1 года назад

Moodle has an authenticated remote code execution risk in the Moodle LMS Dropbox repository

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-c8pm-7v2j-xmww

около 4 лет назад

The TeX filter in Moodle 1.6 before 1.6.9+, 1.7 before 1.7.7+, 1.8 before 1.8.9, and 1.9 before 1.9.5 allows user-assisted attackers to read arbitrary files via an input command in a "$$" sequence, which causes LaTeX to include the contents of the file.

EPSS: Низкий
github логотип

GHSA-c87j-9rrq-h3j8

около 4 лет назад

Moodle allows attackers to trigger the generation of arbitrary messages

EPSS: Низкий
github логотип

GHSA-c7v4-m269-4995

почти 5 лет назад

Exposure of Sensitive Information to an Unauthorized Actor in Moodle

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-c7jj-vfmr-j9mj

около 4 лет назад

Moodle command execution vulnerability exists in the default legacy spellchecker plugin

CVSS3: 9.1
EPSS: Средний
github логотип

GHSA-c78f-pfch-h9wc

около 4 лет назад

Moodle before 1.6.2, when the configuration lacks (1) algebra or (2) tex filters, allows remote authenticated users to write LaTeX or MimeTeX output files to the top level of the dataroot directory via (a) filter/algebra/pix.php or (b) filter/tex/pix.php.

EPSS: Низкий
github логотип

GHSA-c767-4whh-v7rw

больше 1 года назад

Moodle has user information visibility control issues in gradebook reports

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-cp39-43xr-2wrp

Moodle XSS Vulnerability

3%
Низкий
около 4 лет назад
github логотип
GHSA-cm4r-58pj-h2ph

Moodle allows attackers to extract archives to arbitrary directories

2%
Низкий
около 4 лет назад
github логотип
GHSA-cjrf-xg77-chpw

Moodle Incorrect sanitation of attributes in forums

CVSS3: 5.3
1%
Низкий
около 4 лет назад
github логотип
GHSA-cj27-r58c-6p6v

Cross-site scripting (XSS) vulnerability in mod/wiki/lang/en/wiki.php in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote attackers to inject arbitrary web script or HTML via the section parameter.

1%
Низкий
около 4 лет назад
github логотип
GHSA-chmf-m33p-ph8m

Moodle allows IDOR in RSS block, which allows access to additional RSS feeds

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-ch68-5r37-p7c3

Moodle cross-site scripting (XSS) vulnerability

2%
Низкий
около 4 лет назад
github логотип
GHSA-cgvv-3455-824j

Moodle Session Fixation allows unauthenticated users to hijack sessions via sesskey parameter

CVSS3: 4.2
0%
Низкий
около 1 года назад
github логотип
GHSA-cg8j-5cr2-568q

Moodle TeX formula editor is vulnerable to DoS through lack of execution time limits

CVSS3: 6.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-cfc8-jvc8-5w3f

SQL injection vulnerability in mod/feedback/complete.php in Moodle 2.0.x before 2.0.10, 2.1.x before 2.1.7, and 2.2.x before 2.2.4 allows remote authenticated users to execute arbitrary SQL commands via crafted form data.

2%
Низкий
около 4 лет назад
github логотип
GHSA-ccwc-3v75-qp35

Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the user password is reset if not specified.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-cc94-hwj3-rf65

Moodle's login_as feature leaks information from external repositories

1%
Низкий
около 4 лет назад
github логотип
GHSA-c9jp-244j-vh78

Moodle cross-site scripting (XSS) vulnerability

5%
Низкий
около 4 лет назад
github логотип
GHSA-c9hq-g4q8-w893

Privilage Escalation in moodle

CVSS3: 5.3
1%
Низкий
больше 5 лет назад
github логотип
GHSA-c8v6-vxhf-wcrr

Moodle has an authenticated remote code execution risk in the Moodle LMS Dropbox repository

CVSS3: 8.8
1%
Низкий
больше 1 года назад
github логотип
GHSA-c8pm-7v2j-xmww

The TeX filter in Moodle 1.6 before 1.6.9+, 1.7 before 1.7.7+, 1.8 before 1.8.9, and 1.9 before 1.9.5 allows user-assisted attackers to read arbitrary files via an input command in a "$$" sequence, which causes LaTeX to include the contents of the file.

6%
Низкий
около 4 лет назад
github логотип
GHSA-c87j-9rrq-h3j8

Moodle allows attackers to trigger the generation of arbitrary messages

2%
Низкий
около 4 лет назад
github логотип
GHSA-c7v4-m269-4995

Exposure of Sensitive Information to an Unauthorized Actor in Moodle

CVSS3: 5.3
2%
Низкий
почти 5 лет назад
github логотип
GHSA-c7jj-vfmr-j9mj

Moodle command execution vulnerability exists in the default legacy spellchecker plugin

CVSS3: 9.1
24%
Средний
около 4 лет назад
github логотип
GHSA-c78f-pfch-h9wc

Moodle before 1.6.2, when the configuration lacks (1) algebra or (2) tex filters, allows remote authenticated users to write LaTeX or MimeTeX output files to the top level of the dataroot directory via (a) filter/algebra/pix.php or (b) filter/tex/pix.php.

1%
Низкий
около 4 лет назад
github логотип
GHSA-c767-4whh-v7rw

Moodle has user information visibility control issues in gradebook reports

CVSS3: 5.3
0%
Низкий
больше 1 года назад

Уязвимостей на страницу