Количество 2 470
Количество 2 470

CVE-2024-45691
A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values.

CVE-2024-45691
A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values.
CVE-2024-45691
A flaw was found in Moodle. When restricting access to a lesson activi ...

CVE-2024-45690
A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.

CVE-2024-45690
A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.
CVE-2024-45690
A flaw was found in Moodle. Additional checks were required to ensure ...

CVE-2024-45689
A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

CVE-2024-45689
A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.
CVE-2024-45689
A flaw was found in Moodle. Dynamic tables did not enforce capability ...

CVE-2024-43440
A flaw was found in moodle. A local file may include risks when restoring block backups.

CVE-2024-43440
A flaw was found in moodle. A local file may include risks when restoring block backups.
CVE-2024-43440
A flaw was found in moodle. A local file may include risks when restor ...

CVE-2024-43439
A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk.

CVE-2024-43439
A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk.
CVE-2024-43439
A flaw was found in moodle. H5P error messages require additional sani ...

CVE-2024-43437
A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scripting (XSS) risk from malicious backup files.

CVE-2024-43437
A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scripting (XSS) risk from malicious backup files.
CVE-2024-43437
A flaw was found in moodle. Insufficient sanitizing of data when perfo ...

CVE-2024-43435
A flaw was found in moodle. Insufficient capability checks make it possible for users with access to restore glossaries in courses to restore them into the global site glossary.

CVE-2024-43435
A flaw was found in moodle. Insufficient capability checks make it possible for users with access to restore glossaries in courses to restore them into the global site glossary.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2024-45691 A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values. | CVSS3: 5.4 | 0% Низкий | 7 месяцев назад |
![]() | CVE-2024-45691 A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values. | CVSS3: 5.4 | 0% Низкий | 7 месяцев назад |
CVE-2024-45691 A flaw was found in Moodle. When restricting access to a lesson activi ... | CVSS3: 5.4 | 0% Низкий | 7 месяцев назад | |
![]() | CVE-2024-45690 A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts. | CVSS3: 7.5 | 0% Низкий | 7 месяцев назад |
![]() | CVE-2024-45690 A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts. | CVSS3: 7.5 | 0% Низкий | 7 месяцев назад |
CVE-2024-45690 A flaw was found in Moodle. Additional checks were required to ensure ... | CVSS3: 7.5 | 0% Низкий | 7 месяцев назад | |
![]() | CVE-2024-45689 A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access. | CVSS3: 6.5 | 0% Низкий | 7 месяцев назад |
![]() | CVE-2024-45689 A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access. | CVSS3: 6.5 | 0% Низкий | 7 месяцев назад |
CVE-2024-45689 A flaw was found in Moodle. Dynamic tables did not enforce capability ... | CVSS3: 6.5 | 0% Низкий | 7 месяцев назад | |
![]() | CVE-2024-43440 A flaw was found in moodle. A local file may include risks when restoring block backups. | CVSS3: 7.5 | 0% Низкий | 8 месяцев назад |
![]() | CVE-2024-43440 A flaw was found in moodle. A local file may include risks when restoring block backups. | CVSS3: 7.5 | 0% Низкий | 8 месяцев назад |
CVE-2024-43440 A flaw was found in moodle. A local file may include risks when restor ... | CVSS3: 7.5 | 0% Низкий | 8 месяцев назад | |
![]() | CVE-2024-43439 A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk. | CVSS3: 5.4 | 0% Низкий | 8 месяцев назад |
![]() | CVE-2024-43439 A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk. | CVSS3: 5.4 | 0% Низкий | 8 месяцев назад |
CVE-2024-43439 A flaw was found in moodle. H5P error messages require additional sani ... | CVSS3: 5.4 | 0% Низкий | 8 месяцев назад | |
![]() | CVE-2024-43437 A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scripting (XSS) risk from malicious backup files. | CVSS3: 5.4 | 0% Низкий | 8 месяцев назад |
![]() | CVE-2024-43437 A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scripting (XSS) risk from malicious backup files. | CVSS3: 5.4 | 0% Низкий | 8 месяцев назад |
CVE-2024-43437 A flaw was found in moodle. Insufficient sanitizing of data when perfo ... | CVSS3: 5.4 | 0% Низкий | 8 месяцев назад | |
![]() | CVE-2024-43435 A flaw was found in moodle. Insufficient capability checks make it possible for users with access to restore glossaries in courses to restore them into the global site glossary. | CVSS3: 5.3 | 0% Низкий | 8 месяцев назад |
![]() | CVE-2024-43435 A flaw was found in moodle. Insufficient capability checks make it possible for users with access to restore glossaries in courses to restore them into the global site glossary. | CVSS3: 5.3 | 0% Низкий | 8 месяцев назад |
Уязвимостей на страницу