Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
moodle moodle 1.3.3 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2004-2237
Unknown vulnerability in Moodle prior to 1.3.4 has unknown impact and attack vectors, related to "strings in Moodle texts."
Moodle Moodle 1.3.2
Moodle Moodle 1.3.3
Moodle Moodle 1.1.1
Moodle Moodle 1.2.0
Moodle Moodle 1.3.0
Moodle Moodle 1.2.1
Moodle Moodle 1.3.1
NA
CVE-2004-1711
Cross-site scripting (XSS) vulnerability in post.php in Moodle prior to 1.3 allows remote malicious users to inject arbitrary web script or HTML via the reply parameter.
Moodle Moodle 1.2.1
Moodle Moodle 1.3.0
Moodle Moodle 1.3.3
Moodle Moodle 1.1.1
Moodle Moodle 1.2.0
Moodle Moodle 1.3.1
Moodle Moodle 1.3.2
NA
CVE-2004-2232
SQL injection vulnerability in sql.php in the Glossary module in Moodle 1.4.1 and previous versions allows remote malicious users to modify SQL statements.
Moodle Moodle 1.2.1
Moodle Moodle 1.3.3
Moodle Moodle 1.3.2
Moodle Moodle 1.1.1
Moodle Moodle 1.3.1
Moodle Moodle 1.4.1
Moodle Moodle 1.3.4
Moodle Moodle 1.2.0
Moodle Moodle 1.3.0
NA
CVE-2004-1425
Directory traversal vulnerability in file.php in Moodle 1.4.2 and previous versions allows remote malicious users to read arbitrary session files for known session IDs via a .. (dot dot) in the file parameter.
Moodle Moodle 1.1.1
Moodle Moodle 1.3.4
Moodle Moodle 1.4.1
Moodle Moodle 1.3.0
Moodle Moodle 1.3.1
Moodle Moodle 1.2.0
Moodle Moodle 1.2.1
Moodle Moodle 1.4.2
Moodle Moodle 1.3.2
Moodle Moodle 1.3.3
NA
CVE-2004-1424
Cross-site scripting (XSS) vulnerability in view.php in Moodle 1.4.2 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the search parameter.
Moodle Moodle 1.2.0
Moodle Moodle 1.2.1
Moodle Moodle 1.4.2
Moodle Moodle 1.3.2
Moodle Moodle 1.3.3
Moodle Moodle 1.3.0
Moodle Moodle 1.3.1
Moodle Moodle 1.1.1
Moodle Moodle 1.3.4
Moodle Moodle 1.4.1
NA
CVE-2005-2247
Multiple unknown vulnerabilities in Moodle prior to 1.5.1 have unknown impact and attack vectors.
Moodle Moodle 1.2.1
Moodle Moodle 1.3.1
Moodle Moodle 1.4.2
Moodle Moodle 1.4.4
Moodle Moodle 1.1.1
Moodle Moodle 1.5
Moodle Moodle 1.5 Beta
Moodle Moodle 1.3.2
Moodle Moodle 1.3.3
Moodle Moodle 1.3.4
Moodle Moodle 1.4.1
Moodle Moodle 1.2.0
Moodle Moodle 1.3.0
Moodle Moodle 1.4.3
Moodle Moodle 1.4.5
NA
CVE-2008-5432
Cross-site scripting (XSS) vulnerability in Moodle prior to 1.6.8, 1.7 prior to 1.7.6, 1.8 prior to 1.8.7, and 1.9 prior to 1.9.3 allows remote malicious users to inject arbitrary web script or HTML via a Wiki page name (aka page title).
Moodle Moodle 1.6.6
Moodle Moodle 1.6.5
Moodle Moodle 1.5
Moodle Moodle 1.4.5
Moodle Moodle 1.3.2
Moodle Moodle 1.3.1
Moodle Moodle 1.7.4
Moodle Moodle 1.7.3
Moodle Moodle 1.8.4
Moodle Moodle 1.8.5
Moodle Moodle 1.6.4
Moodle Moodle 1.6.3
Moodle Moodle 1.4.4
Moodle Moodle 1.4.3
Moodle Moodle 1.3.0
Moodle Moodle 1.2.1
Moodle Moodle 1.7.2
Moodle Moodle 1.7.1
Moodle Moodle 1.8.6
Moodle Moodle 1.9.0
Moodle Moodle 1.6.1
Moodle Moodle 1.6.0
NA
CVE-2008-1502
The _bad_protocol_once function in phpgwapi/inc/class.kses.inc.php in KSES, as used in eGroupWare prior to 1.4.003, Moodle prior to 1.8.5, and other products, allows remote malicious users to bypass HTML filtering and conduct cross-site scripting (XSS) attacks via a string contai...
Moodle Moodle 1.8.1
Moodle Moodle 1.6.7
Moodle Moodle 1.5.0
Moodle Moodle 1.5.3
Moodle Moodle 1.4.2
Moodle Moodle 1.4.1
Moodle Moodle 1.2.0
Moodle Moodle 1.1.1
Moodle Moodle
Moodle Moodle 1.7.4
Moodle Moodle 1.7.3
Moodle Moodle 1.6.4
Moodle Moodle 1.6.3
Moodle Moodle 1.6.2
Moodle Moodle 1.5
Moodle Moodle 1.4.5
Moodle Moodle 1.3.2
Moodle Moodle 1.3.1
Egroupware Egroupware 1.0.3
Egroupware Egroupware 1.0.1
Moodle Moodle 1.7.6
Moodle Moodle 1.7.5
NA
CVE-2010-2228
Cross-site scripting (XSS) vulnerability in the MNET access-control interface in Moodle prior to 1.8.13 and 1.9.x prior to 1.9.9 allows remote malicious users to inject arbitrary web script or HTML via vectors involving extended characters in a username.
Moodle Moodle 1.1.1
Moodle Moodle 1.2.0
Moodle Moodle 1.4.1
Moodle Moodle 1.4.2
Moodle Moodle 1.5.3
Moodle Moodle 1.5.0
Moodle Moodle 1.6.7
Moodle Moodle 1.6.8
Moodle Moodle 1.2.1
Moodle Moodle 1.3.0
Moodle Moodle 1.4.3
Moodle Moodle 1.4.4
Moodle Moodle 1.6.0
Moodle Moodle 1.6.1
Moodle Moodle 1.7.1
Moodle Moodle 1.8.1
Moodle Moodle 1.8.2
Moodle Moodle 1.8.9
Moodle Moodle 1.8.10
Moodle Moodle 1.3.1
Moodle Moodle 1.3.2
Moodle Moodle 1.4.5
NA
CVE-2010-2229
Multiple cross-site scripting (XSS) vulnerabilities in blog/index.php in Moodle prior to 1.8.13 and 1.9.x prior to 1.9.9 allow remote malicious users to inject arbitrary web script or HTML via unspecified parameters.
Moodle Moodle 1.8.7
Moodle Moodle 1.8.6
Moodle Moodle 1.7.3
Moodle Moodle 1.6.4
Moodle Moodle 1.6.6
Moodle Moodle 1.5.1
Moodle Moodle 1.5.2
Moodle Moodle 1.4.4
Moodle Moodle 1.3.4
Moodle Moodle 1.8.9
Moodle Moodle 1.8.8
Moodle Moodle 1.8.1
Moodle Moodle 1.6.3
Moodle Moodle 1.6.5
Moodle Moodle 1.6.2
Moodle Moodle 1.5
Moodle Moodle 1.4.2
Moodle Moodle 1.4.5
Moodle Moodle 1.2.0
Moodle Moodle 1.1.1
Moodle Moodle
Moodle Moodle 1.8.5
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
encryption
CVE-2024-4331
CVE-2024-26925
arbitrary code
CVE-2006-4304
CVE-2024-25458
CVE-2024-27077
reflected XSS
CVE-2024-4059
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »