Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mahara mahara 1.8.0 vulnerabilities and exploits
(subscribe to this query)
8.1
CVSSv3
CVE-2017-1000134
Mahara 1.8 prior to 1.8.6 and 1.9 prior to 1.9.4 and 1.10 prior to 1.10.1 and 15.04 prior to 15.04.0 are vulnerable because group members can lose access to the group files they uploaded if another group member changes the access permissions on them.
Mahara Mahara 1.8.1
Mahara Mahara 1.8.2
Mahara Mahara 1.8.3
Mahara Mahara 1.8.4
Mahara Mahara 1.8.5
Mahara Mahara 1.8
Mahara Mahara 1.8.0
Mahara Mahara 1.9
Mahara Mahara 1.9.1
Mahara Mahara 1.9.2
Mahara Mahara 1.9.3
Mahara Mahara 1.9.0
Mahara Mahara 1.10
Mahara Mahara 1.10.0
Mahara Mahara 15.04
6.5
CVSSv3
CVE-2017-1000136
Mahara 1.8 prior to 1.8.6 and 1.9 prior to 1.9.4 and 1.10 prior to 1.10.1 and 15.04 prior to 15.04.0 are vulnerable to old sessions not being invalidated after a password change.
Mahara Mahara 1.8.5
Mahara Mahara 1.8.0
Mahara Mahara 1.8
Mahara Mahara 1.8.2
Mahara Mahara 1.8.4
Mahara Mahara 1.8.1
Mahara Mahara 1.8.3
Mahara Mahara 1.9
Mahara Mahara 1.9.2
Mahara Mahara 1.9.0
Mahara Mahara 1.9.1
Mahara Mahara 1.9.3
Mahara Mahara 1.10
Mahara Mahara 1.10.0
Mahara Mahara 15.04
4.8
CVSSv3
CVE-2017-1000132
Mahara 1.8 prior to 1.8.7 and 1.9 prior to 1.9.5 and 1.10 prior to 1.10.3 and 15.04 prior to 15.04.0 are vulnerable to a maliciously created .swf files that can have its code executed when a user tries to download the file.
Mahara Mahara 1.8.4
Mahara Mahara 1.8.0
Mahara Mahara 1.8
Mahara Mahara 1.8.6
Mahara Mahara 1.8.1
Mahara Mahara 1.8.2
Mahara Mahara 1.8.3
Mahara Mahara 1.8.5
Mahara Mahara 1.9.4
Mahara Mahara 1.9.1
Mahara Mahara 1.9.2
Mahara Mahara 1.9.3
Mahara Mahara 1.9
Mahara Mahara 1.9.0
Mahara Mahara 1.10.1
Mahara Mahara 1.10.2
Mahara Mahara 1.10
Mahara Mahara 1.10.0
Mahara Mahara 15.04
5.4
CVSSv3
CVE-2017-1000140
Mahara 1.8 prior to 1.8.7 and 1.9 prior to 1.9.5 and 1.10 prior to 1.10.3 and 15.04 prior to 15.04.0 are vulnerable to a maliciously created .xml file that can have its code executed when user tries to download the file.
Mahara Mahara 1.8
Mahara Mahara 1.8.6
Mahara Mahara 1.8.1
Mahara Mahara 1.8.2
Mahara Mahara 1.8.4
Mahara Mahara 1.8.0
Mahara Mahara 1.8.3
Mahara Mahara 1.8.5
Mahara Mahara 1.9
Mahara Mahara 1.9.1
Mahara Mahara 1.9.3
Mahara Mahara 1.9.4
Mahara Mahara 1.9.2
Mahara Mahara 1.9.0
Mahara Mahara 1.10.1
Mahara Mahara 1.10.2
Mahara Mahara 1.10.0
Mahara Mahara 1.10
Mahara Mahara 15.04
8
CVSSv3
CVE-2017-1000139
Mahara 1.8 prior to 1.8.7 and 1.9 prior to 1.9.5 and 1.10 prior to 1.10.3 and 15.04 prior to 15.04.0 are vulnerable to server-side request forgery attacks as not all processes of curl redirects are checked against a white or black list. Employing SafeCurl will prevent issues.
Mahara Mahara 1.8
Mahara Mahara 1.8.6
Mahara Mahara 1.8.1
Mahara Mahara 1.8.2
Mahara Mahara 1.8.4
Mahara Mahara 1.8.0
Mahara Mahara 1.8.3
Mahara Mahara 1.8.5
Mahara Mahara 1.9
Mahara Mahara 1.9.4
Mahara Mahara 1.9.1
Mahara Mahara 1.9.3
Mahara Mahara 1.9.2
Mahara Mahara 1.9.0
Mahara Mahara 1.10.1
Mahara Mahara 1.10.2
Mahara Mahara 1.10.0
Mahara Mahara 1.10
Mahara Mahara 15.04
6.5
CVSSv3
CVE-2017-1000142
Mahara 1.8 prior to 1.8.7 and 1.9 prior to 1.9.5 and 1.10 prior to 1.10.3 and 15.04 prior to 15.04.0 are vulnerable to users being able to delete their submitted page through URL manipulation.
Mahara Mahara 1.8
Mahara Mahara 1.8.4
Mahara Mahara 1.8.0
Mahara Mahara 1.8.6
Mahara Mahara 1.8.1
Mahara Mahara 1.8.2
Mahara Mahara 1.8.3
Mahara Mahara 1.8.5
Mahara Mahara 1.9.4
Mahara Mahara 1.9.1
Mahara Mahara 1.9.3
Mahara Mahara 1.9
Mahara Mahara 1.9.2
Mahara Mahara 1.9.0
Mahara Mahara 1.10.0
Mahara Mahara 1.10.1
Mahara Mahara 1.10.2
Mahara Mahara 1.10
Mahara Mahara 15.04
4.3
CVSSv3
CVE-2017-1000143
Mahara 1.8 prior to 1.8.7 and 1.9 prior to 1.9.5 and 1.10 prior to 1.10.3 and 15.04 prior to 15.04.0 are vulnerable to users receiving watchlist notifications about pages they do not have access to anymore.
Mahara Mahara 1.8.6
Mahara Mahara 1.8.1
Mahara Mahara 1.8.2
Mahara Mahara 1.8.4
Mahara Mahara 1.8.0
Mahara Mahara 1.8
Mahara Mahara 1.8.3
Mahara Mahara 1.8.5
Mahara Mahara 1.9
Mahara Mahara 1.9.1
Mahara Mahara 1.9.3
Mahara Mahara 1.9.4
Mahara Mahara 1.9.2
Mahara Mahara 1.9.0
Mahara Mahara 1.10.1
Mahara Mahara 1.10.2
Mahara Mahara 1.10
Mahara Mahara 1.10.0
Mahara Mahara 15.04
6.5
CVSSv3
CVE-2017-1000135
Mahara 1.8 prior to 1.8.7 and 1.9 prior to 1.9.5 and 1.10 prior to 1.10.3 and 15.04 prior to 15.04.0 are vulnerable as logged-in users can stay logged in after the institution they belong to is suspended.
Mahara Mahara 1.8.1
Mahara Mahara 1.8.3
Mahara Mahara 1.8
Mahara Mahara 1.8.4
Mahara Mahara 1.8.5
Mahara Mahara 1.8.0
Mahara Mahara 1.8.6
Mahara Mahara 1.8.2
Mahara Mahara 1.9.3
Mahara Mahara 1.9.0
Mahara Mahara 1.9
Mahara Mahara 1.9.4
Mahara Mahara 1.9.2
Mahara Mahara 1.9.1
Mahara Mahara 1.10.1
Mahara Mahara 1.10
Mahara Mahara 1.10.2
Mahara Mahara 1.10.0
Mahara Mahara 15.04
NA
CVE-2014-1878
Stack-based buffer overflow in the cmd_submitf function in cgi/cmd.c in Nagios Core, possibly 4.0.3rc1 and previous versions, and Icinga prior to 1.8.6, 1.9 prior to 1.9.5, and 1.10 prior to 1.10.3 allows remote malicious users to cause a denial of service (segmentation fault) vi...
Nagios Nagios
Icinga Icinga 1.10.0
Icinga Icinga 1.8.0
Icinga Icinga 1.8.1
Nagios Nagios 4.0.0
Icinga Icinga 1.9.2
Icinga Icinga 1.9.3
Icinga Icinga 1.9.4
Icinga Icinga 1.9.0
Icinga Icinga 1.9.1
Icinga Icinga 1.8.4
Icinga Icinga
Icinga Icinga 1.10.1
Icinga Icinga 1.10.2
Icinga Icinga 1.8.2
Icinga Icinga 1.8.3
Nagios Nagios 4.0.2
NA
CVE-2013-7108
Multiple off-by-one errors in Nagios Core 3.5.1, 4.0.2, and previous versions, and Icinga prior to 1.8.5, 1.9 prior to 1.9.4, and 1.10 prior to 1.10.2 allow remote authenticated users to obtain sensitive information from process memory or cause a denial of service (crash) via a l...
Nagios Nagios 3.0
Nagios Nagios 3.0.3
Nagios Nagios 3.0.4
Nagios Nagios 3.2.1
Nagios Nagios 3.2.2
Nagios Nagios 3.2.3
Nagios Nagios
Nagios Nagios 3.0.1
Nagios Nagios 3.0.2
Nagios Nagios 3.1.2
Nagios Nagios 3.2.0
Nagios Nagios 3.4.3
Nagios Nagios 3.5.1
Nagios Nagios 3.1.0
Nagios Nagios 3.1.1
Nagios Nagios 3.4.1
Nagios Nagios 3.4.2
Nagios Nagios 3.0.5
Nagios Nagios 3.0.6
Nagios Nagios 3.3.1
Nagios Nagios 3.4.0
Icinga Icinga 1.9.0
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started