Lucene search

K
nessusThis script is Copyright (C) 2023-2024 and is owned by Tenable, Inc. or an Affiliate thereof.WEB_APPLICATION_SCANNING_113596
HistoryFeb 20, 2023 - 12:00 a.m.

Moodle 4.0.x < 4.0.4 Multiple Vulnerabilities

2023-02-2000:00:00
This script is Copyright (C) 2023-2024 and is owned by Tenable, Inc. or an Affiliate thereof.
www.tenable.com
49
moodle
vulnerabilities
stored cross-site scripting
remote code execution
sql injection
denial of service
information disclosure
access control
mustache template helpers
backup files
h5p activity
quiz web services

EPSS

0.008

Percentile

82.5%

The version of Moodle installed on the remote host is 3.9.x prior to 3.9.17, 3.11.x prior to 3.11.10 or 4.0.x prior to 4.0.4. It is, therefore, affected by multiple vulnerabilities:

  • A stored Cross-Site Scripting (XSS) and page Denial of Service (DoS) vulnerabilities due to recursive rendering in Mustache template helpers. (CVE-2022-40313)

  • A Remote Code Execution (RCE) vulnerability when restoring backup files originating from Moodle 1.9. (CVE-2022-40314)

  • A limited SQL injection vulnerability in the “browse list of users” site administration page. (CVE-2022-40315)

  • An information disclosure in the H5P activity attempts report not filtering by groups, leading to data exposure to non-editing teachers about attempts and users in groups they should not have access to. (CVE-2022-40316)

  • An improper access control in some quiz web services allowing students to bypass sequential navigation during a quiz attempt. (CVE-2022-40208)

Note that the scanner has not attempted to exploit this issue but has instead relied only on application’s self-reported version number.

No source data

EPSS

0.008

Percentile

82.5%