Логотип exploitDog
product: "moodle"
Консоль
Логотип exploitDog

exploitDog

product: "moodle"

Количество 2 470

Количество 2 470

debian логотип

CVE-2024-43435

8 месяцев назад

A flaw was found in moodle. Insufficient capability checks make it pos ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2024-43434

8 месяцев назад

The bulk message sending feature in Moodle's Feedback module's non-respondents report had an incorrect CSRF token check, leading to a CSRF vulnerability.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2024-43434

8 месяцев назад

The bulk message sending feature in Moodle's Feedback module's non-respondents report had an incorrect CSRF token check, leading to a CSRF vulnerability.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2024-43434

8 месяцев назад

The bulk message sending feature in Moodle's Feedback module's non-res ...

CVSS3: 8.1
EPSS: Низкий
ubuntu логотип

CVE-2024-43433

8 месяцев назад

A flaw was found in moodle. Matrix room membership and power levels are incorrectly applied and revoked for suspended Moodle users.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2024-43433

8 месяцев назад

A flaw was found in moodle. Matrix room membership and power levels are incorrectly applied and revoked for suspended Moodle users.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2024-43433

8 месяцев назад

A flaw was found in moodle. Matrix room membership and power levels ar ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2024-43432

8 месяцев назад

A flaw was found in moodle. The cURL wrapper in Moodle strips HTTPAUTH and USERPWD headers during emulated redirects, but retains other original request headers, so HTTP authorization header information could be unintentionally sent in requests to redirect URLs.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2024-43432

8 месяцев назад

A flaw was found in moodle. The cURL wrapper in Moodle strips HTTPAUTH and USERPWD headers during emulated redirects, but retains other original request headers, so HTTP authorization header information could be unintentionally sent in requests to redirect URLs.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2024-43432

8 месяцев назад

A flaw was found in moodle. The cURL wrapper in Moodle strips HTTPAUTH ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2024-43431

8 месяцев назад

A vulnerability was found in Moodle. Insufficient capability checks made it possible to delete badges that a user does not have permission to access.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-43431

8 месяцев назад

A vulnerability was found in Moodle. Insufficient capability checks made it possible to delete badges that a user does not have permission to access.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-43431

8 месяцев назад

A vulnerability was found in Moodle. Insufficient capability checks ma ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2024-43430

8 месяцев назад

A flaw was found in moodle. External API access to Quiz can override contained insufficient access control.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2024-43430

8 месяцев назад

A flaw was found in moodle. External API access to Quiz can override contained insufficient access control.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2024-43430

8 месяцев назад

A flaw was found in moodle. External API access to Quiz can override c ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2024-43429

8 месяцев назад

A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in users without the "view hidden user fields" capability having access to the information.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2024-43429

8 месяцев назад

A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in users without the "view hidden user fields" capability having access to the information.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2024-43429

8 месяцев назад

A flaw was found in moodle. Some hidden user profile fields are visibl ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2024-43428

8 месяцев назад

To address a cache poisoning risk in Moodle, additional validation for local storage was required.

CVSS3: 7.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
debian логотип
CVE-2024-43435

A flaw was found in moodle. Insufficient capability checks make it pos ...

CVSS3: 5.3
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2024-43434

The bulk message sending feature in Moodle's Feedback module's non-respondents report had an incorrect CSRF token check, leading to a CSRF vulnerability.

CVSS3: 8.1
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2024-43434

The bulk message sending feature in Moodle's Feedback module's non-respondents report had an incorrect CSRF token check, leading to a CSRF vulnerability.

CVSS3: 8.1
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-43434

The bulk message sending feature in Moodle's Feedback module's non-res ...

CVSS3: 8.1
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2024-43433

A flaw was found in moodle. Matrix room membership and power levels are incorrectly applied and revoked for suspended Moodle users.

CVSS3: 5.3
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2024-43433

A flaw was found in moodle. Matrix room membership and power levels are incorrectly applied and revoked for suspended Moodle users.

CVSS3: 5.3
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-43433

A flaw was found in moodle. Matrix room membership and power levels ar ...

CVSS3: 5.3
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2024-43432

A flaw was found in moodle. The cURL wrapper in Moodle strips HTTPAUTH and USERPWD headers during emulated redirects, but retains other original request headers, so HTTP authorization header information could be unintentionally sent in requests to redirect URLs.

CVSS3: 5.3
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2024-43432

A flaw was found in moodle. The cURL wrapper in Moodle strips HTTPAUTH and USERPWD headers during emulated redirects, but retains other original request headers, so HTTP authorization header information could be unintentionally sent in requests to redirect URLs.

CVSS3: 5.3
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-43432

A flaw was found in moodle. The cURL wrapper in Moodle strips HTTPAUTH ...

CVSS3: 5.3
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2024-43431

A vulnerability was found in Moodle. Insufficient capability checks made it possible to delete badges that a user does not have permission to access.

CVSS3: 7.5
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2024-43431

A vulnerability was found in Moodle. Insufficient capability checks made it possible to delete badges that a user does not have permission to access.

CVSS3: 7.5
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-43431

A vulnerability was found in Moodle. Insufficient capability checks ma ...

CVSS3: 7.5
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2024-43430

A flaw was found in moodle. External API access to Quiz can override contained insufficient access control.

CVSS3: 5.3
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2024-43430

A flaw was found in moodle. External API access to Quiz can override contained insufficient access control.

CVSS3: 5.3
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-43430

A flaw was found in moodle. External API access to Quiz can override c ...

CVSS3: 5.3
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2024-43429

A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in users without the "view hidden user fields" capability having access to the information.

CVSS3: 5.3
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2024-43429

A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in users without the "view hidden user fields" capability having access to the information.

CVSS3: 5.3
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-43429

A flaw was found in moodle. Some hidden user profile fields are visibl ...

CVSS3: 5.3
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2024-43428

To address a cache poisoning risk in Moodle, additional validation for local storage was required.

CVSS3: 7.7
0%
Низкий
8 месяцев назад

Уязвимостей на страницу