Skip to main content

Moodle Multiple Vulnerabilities

Last Update Date: 18 May 2016 09:12 Release Date: 18 May 2016 2791 Views

RISK: Medium Risk

TYPE: Servers - Other Servers

TYPE: Other Servers

Multiple vulnerabilities have been identified in Moodle, A remote user can exploit these vulnerabilities to conduct cross-site request forgery attacks, access data and modify data on the targeted system.


Impact

  • Cross-Site Scripting
  • Information Disclosure
  • Data Manipulation

System / Technologies affected

  • versions prior to  2.7.14, 2.8.12, 2.9.6, 3.0.4

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued a fix (2.7.14, 2.8.12, 2.9.6, 3.0.4).

Vulnerability Identifier


Source


Related Link