| CVE-2017-2641 |
critical |
9.8 |
9.8 |
9y ago |
Moodle SQL injection via user preferences |
|
| CVE-2016-3734 |
high |
8.8 |
8.8 |
9y ago |
Moodle Cross-site request forgery (CSRF) vulnerability |
|
| CVE-2016-9187 |
high |
8.8 |
8.8 |
10y ago |
Moodle Unrestricted file upload vulnerability |
|
| CVE-2016-2157 |
high |
8.8 |
8.8 |
10y ago |
Moodle cross-site request forgery (CSRF) vulnerability |
|
| CVE-2015-5338 |
high |
8.8 |
8.8 |
10y ago |
Moodle multiple cross-site request forgery (CSRF) vulnerabilities |
|
| CVE-2015-5267 |
high |
7.5 |
7.5 |
10y ago |
Moodle uses predictable password-recovery tokens |
|
| CVE-2014-7845 |
high |
— |
7.5 |
12y ago |
Moodle Temporary Passwords are Brute Force-able |
|
| CVE-2014-3541 |
high |
— |
7.5 |
12y ago |
Moodle vulnerable to PHP object injection attacks |
|
| CVE-2010-1615 |
high |
— |
7.5 |
16y ago |
Moodle vulnerable to SQL injection |
|
| CVE-2015-3272 |
high |
7.4 |
7.4 |
10y ago |
Moodle open redirect vulnerability |
|
| CVE-2016-7038 |
high |
7.3 |
7.3 |
10y ago |
Moodle Weak Password Recovery Mechanism for Forgotten Password |
|
| CVE-2015-3179 |
low |
— |
3.5 |
11y ago |
Moodle allows attackers to bypass intended login restrictions |
|
| CVE-2015-3178 |
low |
— |
3.5 |
11y ago |
Moodle cross-site scripting (XSS) vulnerability |
|
| CVE-2015-3174 |
low |
— |
3.5 |
11y ago |
Moodle does not set the RISK_XSS bit for graders |
|
| CVE-2015-2273 |
low |
— |
3.5 |
11y ago |
Moodle cross-site scripting (XSS) vulnerability |
|
| CVE-2015-2269 |
low |
— |
3.5 |
11y ago |
Moodle XSS Vulnerability |
|
| CVE-2015-0216 |
low |
— |
3.5 |
11y ago |
Moodle does not set the RISK_XSS bit for graders |
|
| CVE-2015-0212 |
low |
— |
3.5 |
11y ago |
Moodle cross-site scripting (XSS) vulnerability |
|
| CVE-2014-7830 |
low |
— |
3.5 |
12y ago |
Moodle cross-site scripting (XSS) vulnerability |
|
| CVE-2014-3551 |
low |
— |
3.5 |
12y ago |
Moodle multiple cross-site scripting (XSS) vulnerabilities |
|
| CVE-2014-3544 |
low |
— |
3.5 |
12y ago |
Moodle cross-site scripting (XSS) vulnerability |
|
| CVE-2014-2571 |
low |
— |
3.5 |
12y ago |
Moodle cross-site scripting (XSS) vulnerability |
|
| CVE-2013-1835 |
low |
— |
3.5 |
13y ago |
Moodle's login_as feature leaks information from external repositories |
|
| CVE-2013-1833 |
low |
— |
3.5 |
13y ago |
Moodle Multiple cross-site scripting (XSS) vulnerabilities in the File Picker module |
|
| CVE-2014-7835 |
low |
— |
2.1 |
12y ago |
Moodle allows attackers to upload files containing JavaScript |
|