[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*


CVE-2017-7489
In Moodle 2.x and 3.x, remote authenticated users can take ownership of arbitrary blogs by editing an external blog link.

CVE-2017-7491
In Moodle 2.x and 3.x, a CSRF attack is possible that allows attackers to change the "number of courses displayed in the course overview block" configuration setting.

CVE-2017-7490
In Moodle 2.x and 3.x, searching of arbitrary blogs is possible because a capability check is missing.

*OVAL
oval:org.secpod.oval:def:112418
CPE    55
cpe:/a:moodle:moodle:3.1.3
cpe:/a:moodle:moodle:2.7.0:rc2
cpe:/a:moodle:moodle:3.1.2
cpe:/a:moodle:moodle:2.7.0:rc1
...

© SecPod Technologies