Количество 2 712
Количество 2 712
CVE-2025-62399
Moodle’s mobile and web service authentication endpoints did not sufficiently restrict repeated password attempts, making them susceptible to brute-force attacks.
CVE-2025-62399
Moodle’s mobile and web service authentication endpoints did not sufficiently restrict repeated password attempts, making them susceptible to brute-force attacks.
CVE-2025-62399
Moodle\u2019s mobile and web service authentication endpoints did not ...
CVE-2025-62398
A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts.
CVE-2025-62398
A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts.
CVE-2025-62398
A serious authentication flaw allowed attackers with valid credentials ...
CVE-2025-62397
The router’s inconsistent response to invalid course IDs allowed attackers to infer which course IDs exist, potentially aiding reconnaissance.
CVE-2025-62397
The router’s inconsistent response to invalid course IDs allowed attackers to infer which course IDs exist, potentially aiding reconnaissance.
CVE-2025-62397
The router\u2019s inconsistent response to invalid course IDs allowed ...
CVE-2025-62396
An error-handling issue in the Moodle router (r.php) could cause the application to display internal directory listings when specific HTTP headers were not properly configured.
CVE-2025-62396
An error-handling issue in the Moodle router (r.php) could cause the application to display internal directory listings when specific HTTP headers were not properly configured.
CVE-2025-62396
An error-handling issue in the Moodle router (r.php) could cause the a ...
CVE-2025-62395
A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data.
CVE-2025-62395
A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data.
CVE-2025-62395
A flaw in the cohort search web service allowed users with permissions ...
CVE-2025-62394
Moodle failed to verify enrolment status correctly when sending quiz notifications. As a result, suspended or inactive users might receive quiz-related messages, leaking limited course information.
CVE-2025-62394
Moodle failed to verify enrolment status correctly when sending quiz notifications. As a result, suspended or inactive users might receive quiz-related messages, leaking limited course information.
CVE-2025-62394
Moodle failed to verify enrolment status correctly when sending quiz n ...
CVE-2025-62393
A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.
CVE-2025-62393
A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-62399 Moodle’s mobile and web service authentication endpoints did not sufficiently restrict repeated password attempts, making them susceptible to brute-force attacks. | CVSS3: 7.5 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62399 Moodle’s mobile and web service authentication endpoints did not sufficiently restrict repeated password attempts, making them susceptible to brute-force attacks. | CVSS3: 7.5 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62399 Moodle\u2019s mobile and web service authentication endpoints did not ... | CVSS3: 7.5 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62398 A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts. | CVSS3: 5.4 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62398 A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts. | CVSS3: 5.4 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62398 A serious authentication flaw allowed attackers with valid credentials ... | CVSS3: 5.4 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62397 The router’s inconsistent response to invalid course IDs allowed attackers to infer which course IDs exist, potentially aiding reconnaissance. | CVSS3: 5.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62397 The router’s inconsistent response to invalid course IDs allowed attackers to infer which course IDs exist, potentially aiding reconnaissance. | CVSS3: 5.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62397 The router\u2019s inconsistent response to invalid course IDs allowed ... | CVSS3: 5.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62396 An error-handling issue in the Moodle router (r.php) could cause the application to display internal directory listings when specific HTTP headers were not properly configured. | CVSS3: 5.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62396 An error-handling issue in the Moodle router (r.php) could cause the application to display internal directory listings when specific HTTP headers were not properly configured. | CVSS3: 5.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62396 An error-handling issue in the Moodle router (r.php) could cause the a ... | CVSS3: 5.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62395 A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data. | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62395 A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data. | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62395 A flaw in the cohort search web service allowed users with permissions ... | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62394 Moodle failed to verify enrolment status correctly when sending quiz notifications. As a result, suspended or inactive users might receive quiz-related messages, leaking limited course information. | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62394 Moodle failed to verify enrolment status correctly when sending quiz notifications. As a result, suspended or inactive users might receive quiz-related messages, leaking limited course information. | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62394 Moodle failed to verify enrolment status correctly when sending quiz n ... | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62393 A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details. | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-62393 A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details. | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад |
Уязвимостей на страницу