PT-2022-8562 · Moodle+1 · Moodle+1

Spyridon Chatzimichail

·

Published

2020-10-15

·

Updated

2024-03-06

·

CVE-2020-14320

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Moodle versions prior to 3.9.1 Moodle versions prior to 3.8.4 Moodle versions prior to 3.7.7
Description The issue is related to a reflected XSS risk in the admin task log filter. This suggests a potential for malicious script execution due to insufficient sanitizing of user input.
Recommendations For versions prior to 3.9.1, update to version 3.9.1 or later. For versions prior to 3.8.4, update to version 3.8.4 or later. For versions prior to 3.7.7, update to version 3.7.7 or later.

Fix

XSS

Weakness Enumeration

Related Identifiers

ALT-PU-2020-3059
ALT-PU-2020-3289
ALT-PU-2022-1641
BIT-MOODLE-2020-14320
CVE-2020-14320
GHSA-FCPW-VQH5-6QWJ

Affected Products

Alt Linux
Moodle