| CVE-2017-2641 |
critical |
9.8 |
9.8 |
9y ago |
Moodle SQL injection via user preferences |
|
| CVE-2016-3734 |
high |
8.8 |
8.8 |
9y ago |
Moodle Cross-site request forgery (CSRF) vulnerability |
|
| CVE-2016-9187 |
high |
8.8 |
8.8 |
10y ago |
Moodle Unrestricted file upload vulnerability |
|
| CVE-2016-2157 |
high |
8.8 |
8.8 |
10y ago |
Moodle cross-site request forgery (CSRF) vulnerability |
|
| CVE-2015-5338 |
high |
8.8 |
8.8 |
10y ago |
Moodle multiple cross-site request forgery (CSRF) vulnerabilities |
|
| CVE-2015-5267 |
high |
7.5 |
7.5 |
10y ago |
Moodle uses predictable password-recovery tokens |
|
| CVE-2014-7845 |
high |
— |
7.5 |
12y ago |
Moodle Temporary Passwords are Brute Force-able |
|
| CVE-2014-3541 |
high |
— |
7.5 |
12y ago |
Moodle vulnerable to PHP object injection attacks |
|
| CVE-2010-1615 |
high |
— |
7.5 |
16y ago |
Moodle vulnerable to SQL injection |
|
| CVE-2015-3272 |
high |
7.4 |
7.4 |
10y ago |
Moodle open redirect vulnerability |
|
| CVE-2016-7038 |
high |
7.3 |
7.3 |
10y ago |
Moodle Weak Password Recovery Mechanism for Forgotten Password |
|