Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:4792
HistoryJul 29, 2017 - 4:21 p.m.

Cross-site Request Forgery (CSRF)

2017-07-2916:21:35
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

EPSS

0.002

Percentile

52.7%

Moodle is vulnerable to cross-site request forgery (CSRF) attacks. A session key isn’t present when setting a tracker preference. This allows remote attackers to hijack the authentication of users requesting a tracker preference.

EPSS

0.002

Percentile

52.7%