Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 2 712

Количество 2 712

ubuntu логотип

CVE-2025-62399

9 месяцев назад

Moodle’s mobile and web service authentication endpoints did not sufficiently restrict repeated password attempts, making them susceptible to brute-force attacks.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2025-62399

9 месяцев назад

Moodle’s mobile and web service authentication endpoints did not sufficiently restrict repeated password attempts, making them susceptible to brute-force attacks.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2025-62399

9 месяцев назад

Moodle\u2019s mobile and web service authentication endpoints did not ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2025-62398

9 месяцев назад

A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2025-62398

9 месяцев назад

A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2025-62398

9 месяцев назад

A serious authentication flaw allowed attackers with valid credentials ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2025-62397

9 месяцев назад

The router’s inconsistent response to invalid course IDs allowed attackers to infer which course IDs exist, potentially aiding reconnaissance.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-62397

9 месяцев назад

The router’s inconsistent response to invalid course IDs allowed attackers to infer which course IDs exist, potentially aiding reconnaissance.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2025-62397

9 месяцев назад

The router\u2019s inconsistent response to invalid course IDs allowed ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2025-62396

9 месяцев назад

An error-handling issue in the Moodle router (r.php) could cause the application to display internal directory listings when specific HTTP headers were not properly configured.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-62396

9 месяцев назад

An error-handling issue in the Moodle router (r.php) could cause the application to display internal directory listings when specific HTTP headers were not properly configured.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2025-62396

9 месяцев назад

An error-handling issue in the Moodle router (r.php) could cause the a ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2025-62395

9 месяцев назад

A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-62395

9 месяцев назад

A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2025-62395

9 месяцев назад

A flaw in the cohort search web service allowed users with permissions ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2025-62394

9 месяцев назад

Moodle failed to verify enrolment status correctly when sending quiz notifications. As a result, suspended or inactive users might receive quiz-related messages, leaking limited course information.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-62394

9 месяцев назад

Moodle failed to verify enrolment status correctly when sending quiz notifications. As a result, suspended or inactive users might receive quiz-related messages, leaking limited course information.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2025-62394

9 месяцев назад

Moodle failed to verify enrolment status correctly when sending quiz n ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2025-62393

9 месяцев назад

A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-62393

9 месяцев назад

A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-62399

Moodle’s mobile and web service authentication endpoints did not sufficiently restrict repeated password attempts, making them susceptible to brute-force attacks.

CVSS3: 7.5
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-62399

Moodle’s mobile and web service authentication endpoints did not sufficiently restrict repeated password attempts, making them susceptible to brute-force attacks.

CVSS3: 7.5
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-62399

Moodle\u2019s mobile and web service authentication endpoints did not ...

CVSS3: 7.5
0%
Низкий
9 месяцев назад
ubuntu логотип
CVE-2025-62398

A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts.

CVSS3: 5.4
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-62398

A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts.

CVSS3: 5.4
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-62398

A serious authentication flaw allowed attackers with valid credentials ...

CVSS3: 5.4
0%
Низкий
9 месяцев назад
ubuntu логотип
CVE-2025-62397

The router’s inconsistent response to invalid course IDs allowed attackers to infer which course IDs exist, potentially aiding reconnaissance.

CVSS3: 5.3
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-62397

The router’s inconsistent response to invalid course IDs allowed attackers to infer which course IDs exist, potentially aiding reconnaissance.

CVSS3: 5.3
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-62397

The router\u2019s inconsistent response to invalid course IDs allowed ...

CVSS3: 5.3
0%
Низкий
9 месяцев назад
ubuntu логотип
CVE-2025-62396

An error-handling issue in the Moodle router (r.php) could cause the application to display internal directory listings when specific HTTP headers were not properly configured.

CVSS3: 5.3
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-62396

An error-handling issue in the Moodle router (r.php) could cause the application to display internal directory listings when specific HTTP headers were not properly configured.

CVSS3: 5.3
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-62396

An error-handling issue in the Moodle router (r.php) could cause the a ...

CVSS3: 5.3
0%
Низкий
9 месяцев назад
ubuntu логотип
CVE-2025-62395

A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data.

CVSS3: 4.3
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-62395

A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data.

CVSS3: 4.3
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-62395

A flaw in the cohort search web service allowed users with permissions ...

CVSS3: 4.3
0%
Низкий
9 месяцев назад
ubuntu логотип
CVE-2025-62394

Moodle failed to verify enrolment status correctly when sending quiz notifications. As a result, suspended or inactive users might receive quiz-related messages, leaking limited course information.

CVSS3: 4.3
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-62394

Moodle failed to verify enrolment status correctly when sending quiz notifications. As a result, suspended or inactive users might receive quiz-related messages, leaking limited course information.

CVSS3: 4.3
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-62394

Moodle failed to verify enrolment status correctly when sending quiz n ...

CVSS3: 4.3
0%
Низкий
9 месяцев назад
ubuntu логотип
CVE-2025-62393

A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.

CVSS3: 4.3
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-62393

A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.

CVSS3: 4.3
0%
Низкий
9 месяцев назад

Уязвимостей на страницу