Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-4297
HistoryDec 16, 2009 - 12:00 a.m.

CVE-2009-4297

2009-12-1600:00:00
ubuntu.com
ubuntu.com
12

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.003

Percentile

72.0%

Multiple cross-site request forgery (CSRF) vulnerabilities in Moodle 1.8
before 1.8.11 and 1.9 before 1.9.7 allow remote attackers to hijack the
authentication of unspecified victims via unknown vectors.

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.003

Percentile

72.0%