Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
blackboard academic suite vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-3421
Multiple cross-site request forgery (CSRF) vulnerabilities in Blackboard Academic Suite 8.0.260.7 allow remote malicious users to hijack the authentication of student users for requests that change configuration and enrollments via unspecified input to (1) update_module.jsp, (2) ...
Blackboard Blackboard Academic Suite 8.0.260.7
NA
CVE-2008-1883
The server in Blackboard Academic Suite 7.x stores MD5 password hashes that are provided directly by clients, which makes it easier for remote malicious users to access accounts via a modified client that skips the javascript/md5.js hash calculation, and instead sends an arbitrar...
Blackboard Blackboard Academic Suite
NA
CVE-2008-1795
Multiple cross-site scripting (XSS) vulnerabilities in Blackboard Academic Suite 7.x and previous versions, and possibly some 8.0 versions, allow remote malicious users to inject arbitrary web script or HTML via (1) the searchText parameter in a Course action to webapps/blackboar...
Blackboard Academic Suite
2 EDB exploits
NA
CVE-2007-5227
Multiple cross-site scripting (XSS) vulnerabilities in messaging/course/composeMessage.jsp in BlackBoard Learning System 6.3.1.593 and previous versions in BlackBoard Academic Suite allow remote malicious users to inject arbitrary web script or HTML via the (1) subject_t and (2) ...
Blackboard Blackboard Learning And Community Post Systems 6.3.1.593
NA
CVE-2006-3914
Cross-site scripting (XSS) vulnerability in Blackboard Academic Suite 6.2.3.23 allows remote authenticated users to inject arbitrary HTML or web script by bypassing client-side validation through disabling JavaScript when submitting an essay response, which has no server-side val...
Blackboard Blackboard Academic Suite 6.2.3.23
NA
CVE-2006-0511
Blackboard Academic Suite 6.0 and previous versions does not properly clear session information when de-authenticating a user who is idle, which allows subsequent users to log in as the previous user and gain privileges. NOTE: the vendor has disputed this issue, saying that "...
Blackboard Blackboard 5.0.2
Blackboard Blackboard 6.0
Blackboard Blackboard 5.5
Blackboard Blackboard 5.5.1
Blackboard Blackboard 5.0
Blackboard Blackboard Academic Suite 6.0
NA
CVE-2005-4339
Cross-site scripting (XSS) vulnerability in Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions prior to 6 allows remote malicious users to inject arbitrary web script or HTML via the context parameter to announcement.pl, whic...
Blackboard Academic Suite 6.2.3.23
Blackboard Academic Suite
Blackboard Academic Suite 6.3.1.424
NA
CVE-2005-4337
The login page in Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions prior to 6 allows remote malicious users to bypass authentication and gain privileges as other users via a modified user_id parameter and a "/" in...
Blackboard Academic Suite 6.2.3.23
Blackboard Academic Suite
Blackboard Academic Suite 6.3.1.424
NA
CVE-2005-4338
announcement.pl in Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions prior to 6 allows remote malicious users to gain administrator privileges by setting the context parameter to "admin".
Blackboard Academic Suite 6.2.3.23
Blackboard Academic Suite
Blackboard Academic Suite 6.3.1.424
NA
CVE-2005-4341
Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions prior to 6 allows remote malicious users to list all available categories via a blank category_id parameter to category.pl. NOTE: it is not clear whether this information is ...
Blackboard Academic Suite 6.2.3.23
Blackboard Academic Suite
Blackboard Academic Suite 6.3.1.424
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »