NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 10775 | CVE-2011-4306 | Cross-site scripting (XSS) vulnerability in course/editsection.html in Moodle 1.9.x before 1.9.14 allows remote authenticated users to inject arbitrary web script or HTML via crafted data. | 2 | 4.3 | Medium | 2017-01-07 | 2012-07-11 | View | |
| 10774 | CVE-2011-4305 | message/refresh.php in Moodle 1.9.x before 1.9.14 allows remote authenticated users to cause a denial of service (infinite request loop) via a URL that specifies a zero wait time for message refreshing. | 2 | 4 | Medium | 2017-01-07 | 2012-07-16 | View | |
| 10773 | CVE-2011-4304 | The chat functionality in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote authenticated users to discover the name of any user via a beep operation. | 2 | 4 | Medium | 2017-01-07 | 2012-07-11 | View | |
| 10772 | CVE-2011-4303 | lib/db/upgrade.php in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 does not set the correct registration_hubs.secret value during installation, which allows remote attackers to bypass intended access restrictions by leveraging the hubs feature. | 2 | 4.3 | Medium | 2017-01-07 | 2012-07-16 | View | |
| 10771 | CVE-2011-4302 | mnet/xmlrpc/client.php in MNET in Moodle 1.9.x before 1.9.14, 2.0.x before 2.0.5, and 2.1.x before 2.1.2 does not properly process the return value of the openssl_verify function, which allows remote attackers to bypass validation via a crafted certificate. | 2 | 6.8 | Medium | 2017-01-07 | 2012-07-11 | View |
Page 15518 of 17672, showing 5 records out of 88360 total, starting on record 77586, ending on 77590