info
discussion
exploit
solution
references
Moodle 'etitle' Parameter HTML Injection Vulnerability
References:
Moodle Homepage
(Moodle)
PR08-13: Persistent Cross-site Scripting (XSS) on Moodle via blog
(ProCheckUp Research
)
MSA-08-0009: Persistent Cross-site Scripting (XSS) on blog entry title parameter
(Moodle)
Privacy Statement
Copyright 2010, SecurityFocus