Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Brendan Heywood

#20459of 53,633
12.5Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2022-8588
5.3
2020-03-10
Moodle · Moodle · CVE-2020-1755
**Name of the Vulnerable Software and Affected Versions** Moodle versions prior to 3.8.2 Moodle versions prior to 3.7.5 Moodle versions prior to 3.6.9 Moodle versions prior to 3.5.11 **Description** The issue allows X-Forwarded-For headers to be used to spoof a user's IP, bypassing remote address checks. **Recommendations** For versions prior to 3.8.2, update to version 3.8.2 or later. For versions prior to 3.7.5, update to version 3.7.5 or later. For versions prior to 3.6.9, update to version 3.6.9 or later. For versions prior to 3.5.11, update to version 3.5.11 or later.
PT-2022-8589
7.2
2020-03-10
Moodle · Moodle · CVE-2020-1756
**Name of the Vulnerable Software and Affected Versions** Moodle versions prior to 3.8.2 Moodle versions prior to 3.7.5 Moodle versions prior to 3.6.9 Moodle versions prior to 3.5.11 **Description** The issue is related to insufficient input escaping applied to the PHP unit webrunner admin tool. **Recommendations** For versions prior to 3.8.2, update to version 3.8.2 or later. For versions prior to 3.7.5, update to version 3.7.5 or later. For versions prior to 3.6.9, update to version 3.6.9 or later. For versions prior to 3.5.11, update to version 3.5.11 or later.