PT-2023-21656 · Unknown+1 · Moodle Lms+1

Lars Bonczek

·

Published

2020-11-08

·

Updated

2024-07-03

·

CVE-2023-28333

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Moodle LMS (affected versions not specified)
Description The Mustache pix helper contained a potential Mustache injection risk if combined with user input. It is noted that this issue did not appear to be implemented or exploitable anywhere in the core Moodle LMS.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Code Injection

Weakness Enumeration

Related Identifiers

ALT-PU-2020-3235
ALT-PU-2023-2012
ALT-PU-2023-2057
ALT-PU-2023-5127
BIT-MOODLE-2023-28333
CVE-2023-28333
GHSA-Q2X3-2F9G-H559

Affected Products

Alt Linux
Moodle Lms