Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-54915
HistoryJul 21, 2022 - 12:00 a.m.

Moodle arbitrary file reading vulnerability

2022-07-2100:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
moodle
e-learning
software
vulnerability
arbitrary file reading
attackers
exploit
path checking
open source

EPSS

0.003

Percentile

69.3%

Moodle is a free and open source e-learning software platform, also known as a course management system, learning management system, or virtual learning environment.Moodle suffers from an arbitrary file reading vulnerability, which stems from insufficient path checking and can be exploited by attackers to read arbitrary files.