Known vulnerabilities in Moodle - page 20

Vendor: moodle.org
Software: Moodle
Software CPE: cpe:2.3:a:moodle_org:moodle:*:*:*:*:*:*:*:*
Website:
Total vulnerabilities: 605
Public exploits: 26
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Moodle Moodle is affected by 605 known vulnerabilities: 28 high, 241 medium, 335 low Critical High Medium Low

Vulnerabilities (605)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU40277 - Exposure of sensitive information to an unauthorized actor
CVE-2016-2151
CWE-200 Low
No
No
- 22.05.2016 SB2016052203
SB2016031407
SB2016031408
and 3 more
#VU40453 - Permissions, Privileges, and Access Controls
CVE-2015-5342
CWE-264 Low
No
No
- 22.02.2016 SB2016022207
SB2015120404
SB2015120405
and 3 more
#VU40454 - Exposure of sensitive information to an unauthorized actor
CVE-2015-5341
CWE-200 Low
No
No
- 22.02.2016 SB2016022207
SB2015120404
SB2015120405
and 3 more
#VU40455 - Exposure of sensitive information to an unauthorized actor
CVE-2015-5340
CWE-200 Low
No
No
- 22.02.2016 SB2016022207
SB2015120404
SB2015120405
and 3 more
#VU40456 - Exposure of sensitive information to an unauthorized actor
CVE-2015-5339
CWE-200 Low
No
No
- 22.02.2016 SB2016022207
SB2015120404
SB2015120405
and 3 more
#VU40457 - Cross-Site Request Forgery (CSRF)
CVE-2015-5338
CWE-352 High
No
No
- 22.02.2016 SB2016022207
SB2015120404
SB2015120405
and 3 more
#VU40458 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2015-5337
CWE-79 Low
No
No
- 22.02.2016 SB2016022207
SB2015120404
SB2015120405
and 3 more
#VU40459 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2015-5336
CWE-79 Low
No
No
- 22.02.2016 SB2016022207
SB2015120404
SB2015120405
and 3 more
#VU40460 - Cross-Site Request Forgery (CSRF)
CVE-2015-5335
CWE-352 Low
No
No
- 22.02.2016 SB2016022207
SB2015120404
SB2015120405
and 3 more
#VU40461 - Resource Management Errors
CVE-2015-5332
CWE-399 Medium
No
No
- 22.02.2016 SB2016022207
SB2015120404
SB2015120405
and 3 more
#VU40462 - Security Features
CVE-2015-5331
CWE-254 Low
No
No
- 22.02.2016 SB2016022207
SB2015120404
SB2015120405
and 3 more
#VU40463 - Permissions, Privileges, and Access Controls
CVE-2015-5272
CWE-264 Low
No
No
- 22.02.2016 SB2016022208
SB2015120404
SB2015120405
and 3 more
#VU40464 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2015-5269
CWE-79 Low
No
No
2.7.10, 2.8.8, 2.9.2 22.02.2016 SB2016022209
SB2015120404
SB2015120405
and 3 more
#VU40465 - Exposure of sensitive information to an unauthorized actor
CVE-2015-5268
CWE-200 Low
No
No
- 22.02.2016 SB2016022209
SB2015120404
SB2015120405
and 3 more
#VU40466 - Exposure of sensitive information to an unauthorized actor
CVE-2015-5267
CWE-200 Medium
No
No
- 22.02.2016 SB2016022209
SB2015120404
SB2015120405
and 3 more
#VU40467 - Permissions, Privileges, and Access Controls
CVE-2015-5266
CWE-264 Medium
No
No
- 22.02.2016 SB2016022209
SB2015120404
SB2015120405
and 3 more
#VU40468 - Permissions, Privileges, and Access Controls
CVE-2015-5265
CWE-264 Low
No
No
- 22.02.2016 SB2016022209
SB2015120404
SB2015120405
and 3 more
#VU40469 - Permissions, Privileges, and Access Controls
CVE-2015-5264
CWE-264 Medium
No
No
- 22.02.2016 SB2016022209
SB2015120404
SB2015120405
and 3 more
#VU40470 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2015-3275
CWE-79 Low
No
No
2.7.9, 2.8.7, 2.9.1 22.02.2016 SB2016022209
SB2015090307
SB2015090308
and 1 more
#VU40471 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2015-3274
CWE-79 Low
No
No
2.7.9, 2.8.7, 2.9.1 22.02.2016 SB2016022210
SB2015090307
SB2015090308
and 1 more


Showing elements 381 - 400 out of 605