Количество 2 712
Количество 2 712
CVE-2024-45691
A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values.
CVE-2024-45691
A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values.
CVE-2024-45691
A flaw was found in Moodle. When restricting access to a lesson activi ...
CVE-2024-45690
A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.
CVE-2024-45690
A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.
CVE-2024-45690
A flaw was found in Moodle. Additional checks were required to ensure ...
CVE-2024-45689
A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.
CVE-2024-45689
A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.
CVE-2024-45689
A flaw was found in Moodle. Dynamic tables did not enforce capability ...
CVE-2024-43440
A flaw was found in moodle. A local file may include risks when restoring block backups.
CVE-2024-43440
A flaw was found in moodle. A local file may include risks when restoring block backups.
CVE-2024-43440
A flaw was found in moodle. A local file may include risks when restor ...
CVE-2024-43439
A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk.
CVE-2024-43439
A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk.
CVE-2024-43439
A flaw was found in moodle. H5P error messages require additional sani ...
CVE-2024-43438
A flaw was found in Feedback. Bulk messaging in the activity's non-respondents report did not verify message recipients belonging to the set of users returned by the report.
CVE-2024-43438
A flaw was found in Feedback. Bulk messaging in the activity's non-respondents report did not verify message recipients belonging to the set of users returned by the report.
CVE-2024-43438
A flaw was found in Feedback. Bulk messaging in the activity's non-res ...
CVE-2024-43437
A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scripting (XSS) risk from malicious backup files.
CVE-2024-43437
A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scripting (XSS) risk from malicious backup files.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-45691 A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values. | CVSS3: 5.4 | 0% Низкий | больше 1 года назад | |
CVE-2024-45691 A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking logic. This issue only affected passwords set to "magic hash" values. | CVSS3: 5.4 | 0% Низкий | больше 1 года назад | |
CVE-2024-45691 A flaw was found in Moodle. When restricting access to a lesson activi ... | CVSS3: 5.4 | 0% Низкий | больше 1 года назад | |
CVE-2024-45690 A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts. | CVSS3: 7.5 | 0% Низкий | больше 1 года назад | |
CVE-2024-45690 A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts. | CVSS3: 7.5 | 0% Низкий | больше 1 года назад | |
CVE-2024-45690 A flaw was found in Moodle. Additional checks were required to ensure ... | CVSS3: 7.5 | 0% Низкий | больше 1 года назад | |
CVE-2024-45689 A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access. | CVSS3: 6.5 | 0% Низкий | больше 1 года назад | |
CVE-2024-45689 A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access. | CVSS3: 6.5 | 0% Низкий | больше 1 года назад | |
CVE-2024-45689 A flaw was found in Moodle. Dynamic tables did not enforce capability ... | CVSS3: 6.5 | 0% Низкий | больше 1 года назад | |
CVE-2024-43440 A flaw was found in moodle. A local file may include risks when restoring block backups. | CVSS3: 7.5 | 1% Низкий | больше 1 года назад | |
CVE-2024-43440 A flaw was found in moodle. A local file may include risks when restoring block backups. | CVSS3: 7.5 | 1% Низкий | больше 1 года назад | |
CVE-2024-43440 A flaw was found in moodle. A local file may include risks when restor ... | CVSS3: 7.5 | 1% Низкий | больше 1 года назад | |
CVE-2024-43439 A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk. | CVSS3: 5.4 | 0% Низкий | больше 1 года назад | |
CVE-2024-43439 A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk. | CVSS3: 5.4 | 0% Низкий | больше 1 года назад | |
CVE-2024-43439 A flaw was found in moodle. H5P error messages require additional sani ... | CVSS3: 5.4 | 0% Низкий | больше 1 года назад | |
CVE-2024-43438 A flaw was found in Feedback. Bulk messaging in the activity's non-respondents report did not verify message recipients belonging to the set of users returned by the report. | CVSS3: 7.5 | 1% Низкий | больше 1 года назад | |
CVE-2024-43438 A flaw was found in Feedback. Bulk messaging in the activity's non-respondents report did not verify message recipients belonging to the set of users returned by the report. | CVSS3: 7.5 | 1% Низкий | больше 1 года назад | |
CVE-2024-43438 A flaw was found in Feedback. Bulk messaging in the activity's non-res ... | CVSS3: 7.5 | 1% Низкий | больше 1 года назад | |
CVE-2024-43437 A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scripting (XSS) risk from malicious backup files. | CVSS3: 5.4 | 0% Низкий | больше 1 года назад | |
CVE-2024-43437 A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scripting (XSS) risk from malicious backup files. | CVSS3: 5.4 | 0% Низкий | больше 1 года назад |
Уязвимостей на страницу