Lucene search

K
nessusThis script is Copyright (C) 2023-2024 and is owned by Tenable, Inc. or an Affiliate thereof.WEB_APPLICATION_SCANNING_113595
HistoryFeb 20, 2023 - 12:00 a.m.

Moodle 3.11.x < 3.11.10 Multiple Vulnerabilities

2023-02-2000:00:00
This script is Copyright (C) 2023-2024 and is owned by Tenable, Inc. or an Affiliate thereof.
www.tenable.com
23
moodle
vulnerabilities
stored xss
rce
dos
sql injection
information disclosure
access control
cve-2022-40313
cve-2022-40314
cve-2022-40315
cve-2022-40316
cve-2022-40208
security issues

EPSS

0.008

Percentile

82.5%

The version of Moodle installed on the remote host is 3.9.x prior to 3.9.17, 3.11.x prior to 3.11.10 or 4.0.x prior to 4.0.4. It is, therefore, affected by multiple vulnerabilities:

  • A stored Cross-Site Scripting (XSS) and page Denial of Service (DoS) vulnerabilities due to recursive rendering in Mustache template helpers. (CVE-2022-40313)

  • A Remote Code Execution (RCE) vulnerability when restoring backup files originating from Moodle 1.9. (CVE-2022-40314)

  • A limited SQL injection vulnerability in the “browse list of users” site administration page. (CVE-2022-40315)

  • An information disclosure in the H5P activity attempts report not filtering by groups, leading to data exposure to non-editing teachers about attempts and users in groups they should not have access to. (CVE-2022-40316)

  • An improper access control in some quiz web services allowing students to bypass sequential navigation during a quiz attempt. (CVE-2022-40208)

Note that the scanner has not attempted to exploit this issue but has instead relied only on application’s self-reported version number.

No source data

EPSS

0.008

Percentile

82.5%