Moodle

Related 0
slug: moodle

No explanation yet for this tag.

🛡 Vulnerabilities tagged with this 28

ID Title
CVE-2017-15110 Information Disclosure in moodle (CVE-2017-15110)
CVE-2017-12157 Information Disclosure in moodle (CVE-2017-12157)
CVE-2017-12156 Moodle 3.x has XSS in the contact form on the "non-respondents" page in non-anonymous feedback.
CVE-2017-7532 In Moodle 3.x, course creators are able to change system default settings for courses.
CVE-2017-7531 In Moodle 3.3, the course overview block reveals activities in hidden courses.
CVE-2017-2642 Moodle 3.x has user fullname disclosure on the user preferences page.
CVE-2017-7491 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-7491)
CVE-2017-7490 Vulnerability in moodle (CVE-2017-7490)
CVE-2017-7489 Privilege Escalation in moodle (CVE-2017-7489)
CVE-2016-3729 Vulnerability in moodle (CVE-2016-3729)
CVE-2016-3734 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-3734)
CVE-2016-3733 Vulnerability in moodle (CVE-2016-3733)
CVE-2016-3732 Information Disclosure in moodle (CVE-2016-3732)
CVE-2016-3731 Information Disclosure in moodle (CVE-2016-3731)
CVE-2017-7298 Cross-Site Scripting (XSS) in moodle (CVE-2017-7298)
CVE-2017-2645 In Moodle 3.x, XSS can occur via attachments to evidence of prior learning.
CVE-2017-2644 In Moodle 3.x, XSS can occur via evidence of prior learning.
CVE-2017-2643 In Moodle 3.2.x, global search displays user names for unauthenticated users.
CVE-2017-2641 In Moodle 2.x and 3.x, SQL injection can occur via user preferences.
CVE-2016-5012 In Moodle 3.x, glossary search displays entries without checking user permissions to view them.
CVE-2017-2578 In Moodle 3.x, there is XSS in the assignment submission page.
CVE-2017-2576 In Moodle 2.x and 3.x, there is incorrect sanitization of attributes in forums.
CVE-2016-8644 In Moodle 2.x and 3.x, the capability to view course notes is checked in the wrong context.
CVE-2016-8643 In Moodle 2.x and 3.x, non-admin site managers may accidentally edit admins via web services.
CVE-2016-8642 In Moodle 2.x and 3.x, the question engine allows access to files that should not be available.
CVE-2016-7038 Vulnerability in moodle (CVE-2016-7038)
CVE-2016-5014 Information Disclosure in moodle (CVE-2016-5014)
CVE-2016-5013 Vulnerability in moodle (CVE-2016-5013)

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →