Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 2 712

Количество 2 712

ubuntu логотип

CVE-2024-45691

больше 1 года назад

A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2024-45691

больше 1 года назад

A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2024-45691

больше 1 года назад

A flaw was found in Moodle. When restricting access to a lesson activi ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2024-45690

больше 1 года назад

A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-45690

больше 1 года назад

A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-45690

больше 1 года назад

A flaw was found in Moodle. Additional checks were required to ensure ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2024-45689

больше 1 года назад

A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2024-45689

больше 1 года назад

A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2024-45689

больше 1 года назад

A flaw was found in Moodle. Dynamic tables did not enforce capability ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2024-43440

больше 1 года назад

A flaw was found in moodle. A local file may include risks when restoring block backups.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-43440

больше 1 года назад

A flaw was found in moodle. A local file may include risks when restoring block backups.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-43440

больше 1 года назад

A flaw was found in moodle. A local file may include risks when restor ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2024-43439

больше 1 года назад

A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2024-43439

больше 1 года назад

A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2024-43439

больше 1 года назад

A flaw was found in moodle. H5P error messages require additional sani ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2024-43438

больше 1 года назад

A flaw was found in Feedback. Bulk messaging in the activity's non-respondents report did not verify message recipients belonging to the set of users returned by the report.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-43438

больше 1 года назад

A flaw was found in Feedback. Bulk messaging in the activity's non-respondents report did not verify message recipients belonging to the set of users returned by the report.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-43438

больше 1 года назад

A flaw was found in Feedback. Bulk messaging in the activity's non-res ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2024-43437

больше 1 года назад

A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scripting (XSS) risk from malicious backup files.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2024-43437

больше 1 года назад

A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scripting (XSS) risk from malicious backup files.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-45691

A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-45691

A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-45691

A flaw was found in Moodle. When restricting access to a lesson activi ...

CVSS3: 5.4
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-45690

A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-45690

A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-45690

A flaw was found in Moodle. Additional checks were required to ensure ...

CVSS3: 7.5
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-45689

A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-45689

A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-45689

A flaw was found in Moodle. Dynamic tables did not enforce capability ...

CVSS3: 6.5
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-43440

A flaw was found in moodle. A local file may include risks when restoring block backups.

CVSS3: 7.5
1%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-43440

A flaw was found in moodle. A local file may include risks when restoring block backups.

CVSS3: 7.5
1%
Низкий
больше 1 года назад
debian логотип
CVE-2024-43440

A flaw was found in moodle. A local file may include risks when restor ...

CVSS3: 7.5
1%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-43439

A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-43439

A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-43439

A flaw was found in moodle. H5P error messages require additional sani ...

CVSS3: 5.4
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-43438

A flaw was found in Feedback. Bulk messaging in the activity's non-respondents report did not verify message recipients belonging to the set of users returned by the report.

CVSS3: 7.5
1%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-43438

A flaw was found in Feedback. Bulk messaging in the activity's non-respondents report did not verify message recipients belonging to the set of users returned by the report.

CVSS3: 7.5
1%
Низкий
больше 1 года назад
debian логотип
CVE-2024-43438

A flaw was found in Feedback. Bulk messaging in the activity's non-res ...

CVSS3: 7.5
1%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-43437

A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scripting (XSS) risk from malicious backup files.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-43437

A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scripting (XSS) risk from malicious backup files.

CVSS3: 5.4
0%
Низкий
больше 1 года назад

Уязвимостей на страницу