Nom de la faiblesse | Source | |
---|---|---|
Cross-Site Request Forgery (CSRF) The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor. |
Métriques | Score | Gravité | CVSS Vecteur | Source |
---|---|---|---|---|
V2 | 6.8 | AV:N/AC:M/Au:N/C:P/I:P/A:P | nvd@nist.gov |
Moodle>>Moodle >> Version To (including) 2.4.11
Moodle>>Moodle >> Version 2.5.0
Moodle>>Moodle >> Version 2.5.1
Moodle>>Moodle >> Version 2.5.2
Moodle>>Moodle >> Version 2.5.3
Moodle>>Moodle >> Version 2.5.4
Moodle>>Moodle >> Version 2.5.5
Moodle>>Moodle >> Version 2.5.6
Moodle>>Moodle >> Version 2.5.7
Moodle>>Moodle >> Version 2.5.8
Moodle>>Moodle >> Version 2.6.0
Moodle>>Moodle >> Version 2.6.1
Moodle>>Moodle >> Version 2.6.2
Moodle>>Moodle >> Version 2.6.3
Moodle>>Moodle >> Version 2.6.4
Moodle>>Moodle >> Version 2.6.5
Moodle>>Moodle >> Version 2.7.0
Moodle>>Moodle >> Version 2.7.1
Moodle>>Moodle >> Version 2.7.2