Vulnerabilities (CVE)

Filtered by vendor Moodle Subscribe
Total 504 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-1978 1 Moodle 1 Moodle 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in help.php in Moodle before 1.3 allows remote attackers to inject arbitrary HTML and web script via the text parameter.
CVE-2004-1711 1 Moodle 1 Moodle 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in post.php in Moodle before 1.3 allows remote attackers to inject arbitrary web script or HTML via the reply parameter.
CVE-2004-1425 1 Moodle 1 Moodle 2024-02-04 5.0 MEDIUM N/A
Directory traversal vulnerability in file.php in Moodle 1.4.2 and earlier allows remote attackers to read arbitrary session files for known session IDs via a .. (dot dot) in the file parameter.
CVE-2004-0725 1 Moodle 1 Moodle 2024-02-04 6.8 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in help.php in Moodle 1.3.2 and 1.4 dev allows remote attackers to inject arbitrary web script or HTML via the file parameter.