PT-2023-32168 · Moodle+8 · Moodle+6

Paul Holden

·

Publicado

2023-11-09

·

Atualizado

2024-03-06

·

CVE-2023-5546

CVSS v3.1

4.3

Média

VetorAV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Software (affected versions not specified)
Description The issue concerns a stored XSS risk in the quiz grading report, where ID numbers were not properly sanitized. This could potentially allow for malicious script execution.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BIT-MOODLE-2023-5546
CVE-2023-5546
GHSA-9724-H8P7-R3JV

Produtos afetados

Moodle
Ckeditor4
Enterprise Linux
Fedora
Moodle/Moodle
Upx
Wireshark