Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 2 712

Количество 2 712

github логотип

GHSA-2hw2-h3mf-c2j9

около 4 лет назад

Moodle open redirect vulnerability

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-2hmm-q272-xmhf

почти 4 года назад

Moodle remote code execution

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2hh3-jmv8-5fmx

около 4 лет назад

Moodle Does Not Escape Characters In Email Headers

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-2fmv-j5xj-4fmq

около 4 лет назад

Moodle Reveals Student Information Meant To Be Anonymous

EPSS: Низкий
github логотип

GHSA-2c5m-jj29-px47

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in help.php in Moodle before 1.3 allows remote attackers to inject arbitrary HTML and web script via the text parameter.

EPSS: Низкий
github логотип

GHSA-28gc-4qq5-8q26

больше 2 лет назад

Moodle Cross-site Scripting vulnerability

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2887-hwqc-wcg8

около 4 лет назад

Algorithmic complexity vulnerability in Moodle 1.9.x before 1.9.19, 2.0.x before 2.0.10, 2.1.x before 2.1.7, and 2.2.x before 2.2.4 allows remote authenticated users to cause a denial of service (CPU consumption) by using the advanced-search feature on a database activity that has many records.

EPSS: Низкий
github логотип

GHSA-27j2-c838-c3qg

около 4 лет назад

Moodle Arbitrary File Read via XML External Entity vulnerability

EPSS: Низкий
github логотип

GHSA-276h-65c8-j9w4

около 4 лет назад

lib/filelib.php in Moodle 2.1.x before 2.1.7 and 2.2.x before 2.2.4 does not properly restrict file access after a block has been hidden, which allows remote authenticated users to obtain sensitive information by reading a file that is embedded in a block.

EPSS: Низкий
github логотип

GHSA-273w-7fxj-pcp6

больше 3 лет назад

Moodle vulnerable to Uncontrolled Resource Consumption

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-267j-cwvg-j28c

около 4 лет назад

Moodle attackers to modify grade metadata

EPSS: Низкий
github логотип

GHSA-25wf-7x6c-wmpf

9 месяцев назад

Moodle does not properly enforce MFA

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2563-fp9c-mgm8

больше 3 лет назад

Moodle Session Fixation vulnerability

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-243v-5pff-qqfj

около 4 лет назад

Moodle Open redirect risk in mobile auto-login feature

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-227w-xh58-rx2j

около 4 лет назад

Multiple cross-site request forgery (CSRF) vulnerabilities in user/messageselect.php in the messaging system in Moodle 2.2.x before 2.2.7, 2.3.x before 2.3.4, and 2.4.x before 2.4.1 allow remote attackers to hijack the authentication of arbitrary users for requests that send course messages.

EPSS: Низкий
ubuntu логотип

CVE-2026-26047

5 месяцев назад

A denial-of-service vulnerability was identified in Moodle’s TeX formula editor. When rendering TeX content using mimetex, insufficient execution time limits could allow specially crafted formulas to consume excessive server resources. An authenticated user could abuse this behavior to degrade performance or cause service interruption.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-26047

5 месяцев назад

A denial-of-service vulnerability was identified in Moodle’s TeX formula editor. When rendering TeX content using mimetex, insufficient execution time limits could allow specially crafted formulas to consume excessive server resources. An authenticated user could abuse this behavior to degrade performance or cause service interruption.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-26047

5 месяцев назад

A denial-of-service vulnerability was identified in Moodle\u2019s TeX ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2026-26046

5 месяцев назад

A vulnerability was found in a Moodle TeX filter administrative setting where insufficient sanitization of configuration input could allow command injection. On sites where the TeX filter is enabled and ImageMagick is installed, a maliciously crafted setting value entered by an administrator could result in unintended system command execution. While exploitation requires administrative privileges, successful compromise could affect the entire Moodle server.

CVSS3: 7.2
EPSS: Низкий
nvd логотип

CVE-2026-26046

5 месяцев назад

A vulnerability was found in a Moodle TeX filter administrative setting where insufficient sanitization of configuration input could allow command injection. On sites where the TeX filter is enabled and ImageMagick is installed, a maliciously crafted setting value entered by an administrator could result in unintended system command execution. While exploitation requires administrative privileges, successful compromise could affect the entire Moodle server.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2hw2-h3mf-c2j9

Moodle open redirect vulnerability

CVSS3: 7.4
2%
Низкий
около 4 лет назад
github логотип
GHSA-2hmm-q272-xmhf

Moodle remote code execution

CVSS3: 9.8
2%
Низкий
почти 4 года назад
github логотип
GHSA-2hh3-jmv8-5fmx

Moodle Does Not Escape Characters In Email Headers

CVSS3: 5.4
1%
Низкий
около 4 лет назад
github логотип
GHSA-2fmv-j5xj-4fmq

Moodle Reveals Student Information Meant To Be Anonymous

2%
Низкий
около 4 лет назад
github логотип
GHSA-2c5m-jj29-px47

Cross-site scripting (XSS) vulnerability in help.php in Moodle before 1.3 allows remote attackers to inject arbitrary HTML and web script via the text parameter.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-28gc-4qq5-8q26

Moodle Cross-site Scripting vulnerability

CVSS3: 6.1
1%
Низкий
больше 2 лет назад
github логотип
GHSA-2887-hwqc-wcg8

Algorithmic complexity vulnerability in Moodle 1.9.x before 1.9.19, 2.0.x before 2.0.10, 2.1.x before 2.1.7, and 2.2.x before 2.2.4 allows remote authenticated users to cause a denial of service (CPU consumption) by using the advanced-search feature on a database activity that has many records.

1%
Низкий
около 4 лет назад
github логотип
GHSA-27j2-c838-c3qg

Moodle Arbitrary File Read via XML External Entity vulnerability

1%
Низкий
около 4 лет назад
github логотип
GHSA-276h-65c8-j9w4

lib/filelib.php in Moodle 2.1.x before 2.1.7 and 2.2.x before 2.2.4 does not properly restrict file access after a block has been hidden, which allows remote authenticated users to obtain sensitive information by reading a file that is embedded in a block.

1%
Низкий
около 4 лет назад
github логотип
GHSA-273w-7fxj-pcp6

Moodle vulnerable to Uncontrolled Resource Consumption

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-267j-cwvg-j28c

Moodle attackers to modify grade metadata

1%
Низкий
около 4 лет назад
github логотип
GHSA-25wf-7x6c-wmpf

Moodle does not properly enforce MFA

CVSS3: 5.3
0%
Низкий
9 месяцев назад
github логотип
GHSA-2563-fp9c-mgm8

Moodle Session Fixation vulnerability

CVSS3: 9.8
7%
Низкий
больше 3 лет назад
github логотип
GHSA-243v-5pff-qqfj

Moodle Open redirect risk in mobile auto-login feature

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-227w-xh58-rx2j

Multiple cross-site request forgery (CSRF) vulnerabilities in user/messageselect.php in the messaging system in Moodle 2.2.x before 2.2.7, 2.3.x before 2.3.4, and 2.4.x before 2.4.1 allow remote attackers to hijack the authentication of arbitrary users for requests that send course messages.

1%
Низкий
около 4 лет назад
ubuntu логотип
CVE-2026-26047

A denial-of-service vulnerability was identified in Moodle’s TeX formula editor. When rendering TeX content using mimetex, insufficient execution time limits could allow specially crafted formulas to consume excessive server resources. An authenticated user could abuse this behavior to degrade performance or cause service interruption.

CVSS3: 6.5
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-26047

A denial-of-service vulnerability was identified in Moodle’s TeX formula editor. When rendering TeX content using mimetex, insufficient execution time limits could allow specially crafted formulas to consume excessive server resources. An authenticated user could abuse this behavior to degrade performance or cause service interruption.

CVSS3: 6.5
0%
Низкий
5 месяцев назад
debian логотип
CVE-2026-26047

A denial-of-service vulnerability was identified in Moodle\u2019s TeX ...

CVSS3: 6.5
0%
Низкий
5 месяцев назад
ubuntu логотип
CVE-2026-26046

A vulnerability was found in a Moodle TeX filter administrative setting where insufficient sanitization of configuration input could allow command injection. On sites where the TeX filter is enabled and ImageMagick is installed, a maliciously crafted setting value entered by an administrator could result in unintended system command execution. While exploitation requires administrative privileges, successful compromise could affect the entire Moodle server.

CVSS3: 7.2
2%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-26046

A vulnerability was found in a Moodle TeX filter administrative setting where insufficient sanitization of configuration input could allow command injection. On sites where the TeX filter is enabled and ImageMagick is installed, a maliciously crafted setting value entered by an administrator could result in unintended system command execution. While exploitation requires administrative privileges, successful compromise could affect the entire Moodle server.

CVSS3: 7.2
2%
Низкий
5 месяцев назад

Уязвимостей на страницу