moodle
629 tracked vulnerabilities.
CVE-2006-6626
Moodle 1.5 - Cross-Site Scripting via IMG SRC Attribute
Dec 18, 2006
EPSS 0.01
CVE-2006-5219
Moodle 1.6.2 - SQL Injection via Double-Encoded Tag Parameter
Oct 10, 2006
EPSS 0.02
CVE-2006-4935
Moodle < 1.6.2 - Improper Input Validation in Database Module
Sep 23, 2006
EPSS 0.00
CVE-2006-4936
Moodle < 1.6.2 - Improper Input Validation in Course Module Object Creation
Sep 23, 2006
EPSS 0.00
CVE-2006-4937
Moodle < 1.6.2 - Authenticated Sensitive Information Exposure via Error Reporting
Sep 23, 2006
EPSS 0.00
CVE-2006-4938
Moodle < 1.6.2 - Authenticated Path Disclosure via Help File Inclusion
Sep 23, 2006
EPSS 0.00
CVE-2006-4939
Moodle < 1.6.2 - Information Exposure via Backup Pathname in Trace Data
Sep 23, 2006
EPSS 0.00
CVE-2006-4940
Moodle < 1.6.2 - Information Disclosure via Forgot Password Find Action
Sep 23, 2006
EPSS 0.00
CVE-2006-4941
Moodle < 1.6.2 - Cross-Site Scripting via Choose and Sub Parameters
Sep 23, 2006
EPSS 0.00
CVE-2006-4942
Moodle <1.6.2 - Privilege Escalation
Sep 23, 2006
EPSS 0.01
CVE-2006-4943
Moodle < 1.6.2 - Unauthenticated Sensitive Information Exposure via Jump Parameter
Sep 23, 2006
EPSS 0.00
CVE-2006-4784
moodle < 1.6.1 - Cross-Site Scripting via doc/index.php or files/index.php
Sep 14, 2006
EPSS 0.00
CVE-2006-4785
moodle < 1.6.1 - SQL Injection via Blog Format Parameter
Sep 14, 2006
EPSS 0.02
CVE-2006-4786
Moodle < 1.6.1 - Information Disclosure via Help.php and Scheduled Backups
Sep 14, 2006
EPSS 0.00
CVE-2006-0146
ADOdb for PHP < 4.70 - Unauthenticated SQL Injection via server.php sql Parameter
Jan 09, 2006
EPSS 0.09
CVE-2006-0147
ADOdb for PHP < 4.70 - Remote Code Execution via tests/tmssql.php do Parameter
Jan 09, 2006
EPSS 0.30
CVE-2005-3648
Moodle 1.5.2 - SQL Injection via id Parameter in category.php and info.php
Nov 17, 2005
EPSS 0.01
CVE-2005-3649
Moodle 1.5.2 - Open Redirect via jumpto.php Jump Parameter
Nov 17, 2005
EPSS 0.08
CVE-2005-2247
Moodle <1.5.1 - Multiple Unspecified Vulnerabilities
Jul 12, 2005
EPSS 0.00
CVE-2004-1424
Moodle <= 1.4.2 - Cross-Site Scripting via Search Parameter
Dec 31, 2004
EPSS 0.01
CVE-2004-1425
Moodle <= 1.4.2 - Directory Traversal via File Parameter
Dec 31, 2004
EPSS 0.01
CVE-2004-2232
Moodle <= 1.4.1 - SQL Injection in Glossary Module
Dec 31, 2004
EPSS 0.01
CVE-2004-2233
Moodle <1.3.2 - Info Disclosure
Dec 31, 2004
EPSS 0.01
CVE-2004-2235
Moodle < 1.2 - Improper Text Filtering
Dec 31, 2004
EPSS 0.00
CVE-2004-2236
Moodle < 1.3.3 - Vulnerability in Language Setting
Dec 31, 2004
EPSS 0.00
Quick Filters