Instructure Canvas Learning Management Service 2020-07-29

CPE Details

Instructure Canvas Learning Management Service 2020-07-29
2020-07-29
2020-09-09
14h45 +00:00
2020-09-09
14h45 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:instructure:canvas_learning_management_service:2020-07-29:*:*:*:*:*:*:*

Informations

Vendor

instructure

Product

canvas_learning_management_service

Version

2020-07-29

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-36539 2023-01-25
23h00 +00:00
Instructure Canvas LMS didn't properly deny access to locked/unpublished files when the unprivileged user access the DocViewer based file preview URL (canvadoc_session_url).
6.5
Medium
CVE-2020-5775 2020-08-21
15h36 +00:00
Server-Side Request Forgery in Canvas LMS 2020-07-29 allows a remote, unauthenticated attacker to cause the Canvas application to perform HTTP GET requests to arbitrary domains.
5.8
Medium