NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
10775  CVE-2011-4306  Cross-site scripting (XSS) vulnerability in course/editsection.html in Moodle 1.9.x before 1.9.14 allows remote authenticated users to inject arbitrary web script or HTML via crafted data.    4.3  Medium  2017-01-07  2012-07-11  View
10774  CVE-2011-4305  message/refresh.php in Moodle 1.9.x before 1.9.14 allows remote authenticated users to cause a denial of service (infinite request loop) via a URL that specifies a zero wait time for message refreshing.    Medium  2017-01-07  2012-07-16  View
10773  CVE-2011-4304  The chat functionality in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote authenticated users to discover the name of any user via a beep operation.    Medium  2017-01-07  2012-07-11  View
10772  CVE-2011-4303  lib/db/upgrade.php in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 does not set the correct registration_hubs.secret value during installation, which allows remote attackers to bypass intended access restrictions by leveraging the hubs feature.    4.3  Medium  2017-01-07  2012-07-16  View
10771  CVE-2011-4302  mnet/xmlrpc/client.php in MNET in Moodle 1.9.x before 1.9.14, 2.0.x before 2.0.5, and 2.1.x before 2.1.2 does not properly process the return value of the openssl_verify function, which allows remote attackers to bypass validation via a crafted certificate.    6.8  Medium  2017-01-07  2012-07-11  View

Page 15518 of 17672, showing 5 records out of 88360 total, starting on record 77586, ending on 77590

Actions