CVE-2013-3630

EPSS 64.5%

Moodle Authenticated Spelling Binary Remote Code Execution

Published: 5/13/2022Modified: 12/2/2024

Description

Moodle through 2.5.2 allows remote authenticated administrators to execute arbitrary programs by configuring the aspell pathname and then triggering a spell-check operation within the TinyMCE editor.

Affected packages (1)

References (5)