Lucene search

K
prionPRIOn knowledge basePRION:CVE-2014-0123
HistoryMar 24, 2014 - 2:20 p.m.

Code injection

2014-03-2414:20:00
PRIOn knowledge base
www.prio-n.com
5

6.7 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

47.2%

The wiki subsystem in Moodle through 2.3.11, 2.4.x before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 does not properly restrict (1) view and (2) edit access, which allows remote authenticated users to perform wiki operations by leveraging the student role and using the Recent Activity block to reach the individual wiki of an arbitrary student.

6.7 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

47.2%