CVE-2021-20183

MEDIUM5.4EPSS 0.46%

Moodle Vulnerable to Reflected Cross-site Scripting

發布日:2022/5/24修改日:2024/2/16
也稱為:GHSA-xhfx-rm8q-c3xvBIT-moodle-2021-20183

描述

It was found in Moodle before version 4.0.0-beta that some search inputs were vulnerable to reflected Cross-site Scripting (XSS) due to insufficient escaping of search queries.

受影響套件(2)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM5.4CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N

參考連結(3)