NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 22716 | CVE-2015-0215 | calendar/externallib.php in Moodle through 2.5.9, 2.6.x before 2.6.7, 2.7.x before 2.7.4, and 2.8.x before 2.8.2 allows remote authenticated users to obtain sensitive calendar-event information via a web-services request. | 2 | 4 | Medium | 2017-01-19 | 2015-06-02 | View | |
| 29372 | CVE-2014-0478 | APT before 1.0.4 does not properly validate source packages, which allows man-in-the-middle attackers to download and install Trojan horse packages by removing the Release signature. | 2 | 4 | Medium | 2017-01-19 | 2014-06-26 | View | |
| 38332 | CVE-2013-2245 | rss/file.php in Moodle through 2.1.10, 2.2.x before 2.2.11, 2.3.x before 2.3.8, 2.4.x before 2.4.5, and 2.5.x before 2.5.1 does not properly implement the use of RSS tokens for impersonation, which allows remote authenticated users to obtain sensitive block information by reading an RSS feed. | 2 | 4 | Medium | 2017-01-18 | 2013-07-29 | View | |
| 44988 | CVE-2012-3391 | mod/forum/rsslib.php in Moodle 2.1.x before 2.1.7 and 2.2.x before 2.2.4 does not properly implement the requirement for posting before reading a Q&A forum, which allows remote authenticated users to bypass intended access restrictions by leveraging the student role and reading the RSS feed for a forum. | 2 | 4 | Medium | 2017-01-19 | 2012-07-24 | View | |
| 60092 | CVE-2006-1383 | Directory traversal vulnerability in Baby FTP Server (BabyFTP) 1.24 allows remote authenticated users to determine existence of files outside the intended document root via unspecified manipulations, which generate different error messages depending on whether a file exists or not. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 3206 of 17672, showing 5 records out of 88360 total, starting on record 16026, ending on 16030