Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Moodle Multiple Input Validation and Information Disclosure Vulnerabilities

Moodle is prone to multiple cross-site scripting, SQL-injection, and information-disclosure vulnerabilities.

Exploiting these issues may allow an attacker to access or modify sensitive data, to execute arbitrary script code, or to steal cookie-based authentication credentials; other attacks are possible.

Versions 1.6.1 is vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2009, SecurityFocus