Moodle Multiple Input Validation Vulnerabilities

Attackers can exploit the HTML-injection issue through a web-client. Attackers can exploit the cross-site scripting issue by enticing an unsuspecting victim to follow a malicious URI.

Sample exploit code has been provided:


 

Privacy Statement
Copyright 2010, SecurityFocus