PT-2025-17917 · Moodle+2 · Moodle+2

Cli-Ish

+1

·

Published

2025-04-22

·

Updated

2026-01-26

·

CVE-2025-3642

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Moodle (affected versions not specified)
Description A flaw was found in Moodle, specifically a remote code execution risk in the Moodle LMS EQUELLA repository. This repository is only available to teachers and managers by default on sites where it is enabled.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Code Injection

Weakness Enumeration

Related Identifiers

ALT-PU-2025-6924
ALT-PU-2025-7344
BDU:2025-05101
BIT-MOODLE-2025-3642
CVE-2025-3642
GHSA-M367-445C-2XQR

Affected Products

Alt Linux
Moodle
Red Os