Educación a distancia Somos Expertos en servicios Moodle

  • Inicio
  • Moodle
    • Productos
    • Servicios
    • Sobre Moodle
    • Sobre Moodle Chile
  • Blog
    • Noticias
      • Seguridad Moodle
      • Planeta Moodle
      • Moodle.org Directo
      • Moodle Buzz
      • Moodle Foro
      • Google News
      • Todas las Noticias
    • Artículos
  • Cotizar

MSA-21-0009: Bypass email verification secret when confirming account registration

Detalles
Publicado el 15 Marzo 2021
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

When creating a user account, it was possible to verify the account without having access to the verification email link/secret.


...
Severity/Risk:Minor
Versions affected:3.10 to 3.10.1, 3.9 to 3.9.4, 3.8 to 3.8.7, 3.5 to 3.5.16 and earlier unsupported versions
Versions fixed:3.10.2, 3.9.5, 3.8.8 and 3.5.17
Reported by:Bandjes
CVE
Leer más...

MSA-21-0010: Fetching a user's enrolled courses via web services did not check profile access in each course

Detalles
Publicado el 15 Marzo 2021
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

The web service responsible for fetching other users' enrolled courses did not validate that the requesting user had permission to view that information in each course.


...
Severity/Risk:Minor
Versions affected:3.10 to 3.10.1, 3.9 to 3.9.4, 3.8 to 3.8.7, 3.5 to 3.5.16 and earlier unsupported versions
Versions fixed:3.10.2,
Leer más...

MSA-21-0011: JQuery versions below 3.5.0 contain some potential vulnerabilities (upstream)

Detalles
Publicado el 15 Marzo 2021
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

The JQuery version used by Moodle required upgrading to 3.5.1 to patch some published potential vulnerabilities.


...
Severity/Risk:Minor
Versions affected:3.10 to 3.10.1, 3.9 to 3.9.4, 3.8 to 3.8.7, 3.5 to 3.5.16 and earlier unsupported versions
Versions fixed:3.10.2, 3.9.5, 3.8.8 and 3.5.17
Reported by:Mike Henry
CVE identifiers:C
Leer más...

MSA-21-0006: Stored XSS via ID number user profile field

Detalles
Publicado el 15 Marzo 2021
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

The ID number user profile field required additional sanitizing to prevent a stored XSS risk.


...
Severity/Risk:Serious
Versions affected:3.10 to 3.10.1, 3.9 to 3.9.4, 3.8 to 3.8.7, 3.5 to 3.5.16 and earlier unsupported versions
Versions fixed:3.10.2, 3.9.5, 3.8.8 and 3.5.17
Reported by:Magyar-Hunor Tamas
Workaround:Disable the ID
Leer más...

MSA-21-0007: Stored XSS and blind SSRF possible via feedback answer text

Detalles
Publicado el 15 Marzo 2021
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

Text-based feedback answers required additional sanitizing to prevent stored XSS and blind SSRF risks.


...
Severity/Risk:Serious
Versions affected:3.10 to 3.10.1, 3.9 to 3.9.4, 3.8 to 3.8.7, 3.5 to 3.5.16 and earlier unsupported versions
Versions fixed:3.10.2, 3.9.5, 3.8.8 and 3.5.17
Reported by:Holme and Rekter0
CVE identifier:CVE
Leer más...

MSA-21-0001: Search input template insufficiently escaped search queries

Detalles
Publicado el 25 Enero 2021
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

Some search inputs were vulnerable to reflected XSS due to insufficient escaping of search queries.


...
Severity/Risk:Serious
Versions affected:3.10
Versions fixed:3.10.1
Reported by:kstpt
CVE identifier:CVE-2021-20183
Changes (master):http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-70571
Tracker
Leer más...

MSA-21-0002: Grade information disclosure in grade's external fetch functions

Detalles
Publicado el 25 Enero 2021
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

Insufficient capability checks in some grade related web services meant students were able to view other students' grades.


...
Severity/Risk:Minor
Versions affected:3.10, 3.9 to 3.9.3, 3.8 to 3.8.6
Versions fixed:3.10.1, 3.9.4 and 3.8.7
Reported by:Juan Segarra Montesinos
CVE identifier:CVE-2021-20184
Changes (master):http://git.moo
Leer más...

MSA-21-0003: Client side denial of service via personal message

Detalles
Publicado el 25 Enero 2021
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

Messaging did not impose a character limit when sending messages, which could result in client-side (browser) denial of service for users receiving very large messages.


...
Severity/Risk:Minor
Versions affected:3.10, 3.9 to 3.9.3, 3.8 to 3.8.6, 3.5 to 3.5.15 and earlier unsupported versions
Versions fixed:3.10.1, 3.9.4, 3.8.7
Leer más...

MSA-21-0004: Stored XSS possible via TeX notation filter

Detalles
Publicado el 25 Enero 2021
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

If the TeX notation filter was enabled, additional sanitizing of TeX content was required to prevent the risk of stored XSS.


...
Severity/Risk:Serious
Versions affected:3.10, 3.9 to 3.9.3, 3.8 to 3.8.6, 3.5 to 3.5.15 and earlier unsupported versions
Versions fixed:3.10.1, 3.9.4, 3.8.7 and 3.5.16
Reported by:Ata Hakcil
Workaround:Di
Leer más...

MSA-21-0005: Arbitrary PHP code execution by site admins via Shibboleth configuration

Detalles
Publicado el 25 Enero 2021
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

It was possible for site administrators to execute arbitrary PHP scripts via a PHP include used during Shibboleth authentication.


...
Severity/Risk:Serious
Versions affected:3.10, 3.9 to 3.9.3, 3.8 to 3.8.6, 3.5 to 3.5.15 and earlier unsupported versions
Versions fixed:3.10.1, 3.9.4, 3.8.7 and 3.5.16
Reported by:Frédéric Massart
Wo
Leer más...

MSA-20-0016: Teacher is able to unenrol users without permission using course restore

Detalles
Publicado el 16 Noviembre 2020
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

Users' enrolment capabilities were not being sufficiently checked when they restored into an existing course, which could lead to them unenrolling users without having permission to do so.


...
Severity/Risk:Minor
Versions affected:3.9 to 3.9.2, 3.8 to 3.8.5, 3.7 to 3.7.8, 3.5 to 3.5.14 and earlier unsupported versions
Versions
Leer más...

MSA-20-0017: Privilege escalation within a course when restoring role overrides

Detalles
Publicado el 16 Noviembre 2020
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

Insufficient capability checks could lead to users with the ability to course restore adding additional capabilities to roles within that course.


...
Severity/Risk:Minor
Versions affected:3.9 to 3.9.2, 3.8 to 3.8.5, 3.7 to 3.7.8, 3.5 to 3.5.14 and earlier unsupported versions
Versions fixed:3.10, 3.9.3, 3.8.6, 3.7.9 and 3.5.15
Rep
Leer más...

MSA-20-0018: Some database module web services did not respect group settings

Detalles
Publicado el 16 Noviembre 2020
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

Some database module web services allowed students to add entries within groups they did not belong to.


...
Severity/Risk:Minor
Versions affected:3.9 to 3.9.2, 3.8 to 3.8.5, 3.7 to 3.7.8, 3.5 to 3.5.14 and earlier unsupported versions
Versions fixed:3.10, 3.9.3, 3.8.6, 3.7.9 and 3.5.15
Reported by:Dani Palou
CVE identifier:CVE-2020
Leer más...

MSA-20-0019: tool_uploadcourse creates new enrol instances unexpectedly in some circumstances

Detalles
Publicado el 16 Noviembre 2020
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

If the upload course tool was used to delete an enrolment method which did not exist or was not already enabled, the tool would erroneously enable that enrolment method. This could lead to unintended users gaining access to the course.


...
Severity/Risk:Minor
Versions affected:3.9 to 3.9.2, 3.8 to 3.8.5, 3.7 to 3.7.8 and 3.5 to
Leer más...

MSA-20-0020: Stored XSS possible when renaming content bank items

Detalles
Publicado el 16 Noviembre 2020
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

It was possible to include JavaScript when re-naming content bank items.


...
Severity/Risk:Minor
Versions affected:3.9 to 3.9.2
Versions fixed:3.10, 3.9.3
Reported by:DegrangeM
CVE identifier:CVE-2020-25702
Changes (master):http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-69046
Tracker issue:MDL-6
Leer más...

MSA-20-0021: The participants table download feature did not respect the site's show user identity configuration

Detalles
Publicado el 16 Noviembre 2020
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
by Michael Hawkins.  

The participants table download always included user emails, but should have only done so when users' emails are not hidden.


...
Severity/Risk:Minor
Versions affected:3.9 to 3.9.2, 3.8 to 3.8.5 and 3.7 to 3.7.8
Versions fixed:3.10, 3.9.3, 3.8.6 and 3.7.9
Reported by:A. Schenkel
CVE identifier:CVE-2020-25703
Changes (master):http://g
Leer más...

MSA-20-0011: Stored XSS via moodlenetprofile parameter in user profile

Detalles
Publicado el 21 Septiembre 2020
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
von Michael Hawkins.  

The moodlenetprofile user profile field required extra sanitizing to prevent a stored XSS risk.


...
Severity/Risk:Serious
Versions affected:3.9 to 3.9.1
Versions fixed:3.9.2
Reported by:Kien Hoang
CVE identifier:CVE-2020-25627
Changes (master):http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-692
Leer más...

MSA-20-0012: Reflected XSS in tag manager

Detalles
Publicado el 21 Septiembre 2020
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
von Michael Hawkins.  

The filter in the admin task log required extra sanitizing to prevent a reflected XSS risk.


...
Severity/Risk:Serious
Versions affected:3.9 to 3.9.1, 3.8 to 3.8.4, 3.7 to 3.7.7, 3.5 to 3.5.13 and earlier unsupported versions
Versions fixed:3.9.2, 3.8.5, 3.7.8 and 3.5.14
Reported by:Luuk Verhoeven
CVE identifier:CVE-2020-25628
Chang
Leer más...

MSA-20-0013: Log in as capability in a course context may lead to some privilege escalation

Detalles
Publicado el 21 Septiembre 2020
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
von Michael Hawkins.  

Users with "Log in as" capability in a course context (typically, course managers) may gain access to some site administration capabilities by "logging in as" a System manager.


...
Severity/Risk:Minor
Versions affected:3.9 to 3.9.1, 3.8 to 3.8.4, 3.7 to 3.7.7, 3.5 to 3.5.13 and earlier unsupported versions
Versions fixed:3.9.2,
Leer más...

MSA-20-0014: Denial of service risk in file picker unzip functionality

Detalles
Publicado el 21 Septiembre 2020
Categoría: Seguridad
  • Imprimir
  • Correo electrónico
von Michael Hawkins.  

The decompressed size of zip files was not checked against available user quota before unzipping them, which could lead to a denial of service risk.


...
Severity/Risk:Serious
Versions affected:3.9 to 3.9.1, 3.8 to 3.8.4, 3.7 to 3.7.7, 3.5 to 3.5.13 and earlier unsupported versions
Versions fixed:3.9.2, 3.8.5, 3.7.8 and 3.5.14
Rep
Leer más...

Más artículos...

  1. MSA-20-0015: Chapter name in book not always escaped with forceclean enabled
  2. MSA-20-0007: Vulnerable JavaScript libraries: jQuery 1.9.1 (upstream)
  3. MSA-20-0008: Reflected XSS in admin task logs filter
  4. MSA-20-0009: Course enrolments allowed privilege escalation from teacher role into manager role
  5. MSA-20-0010: yui_combo should mitigate denial of service risk
  6. MSA-20-0005: MathJax URL upgraded to later version to remove XSS risk (upstream)
  7. MSA-20-0006: Remote code execution possible via SCORM packages
  8. MSA-20-0002: Grade history report does not respect Separate groups mode in the course settings
  9. MSA-20-0003: IP addresses can be spoofed using X-Forwarded-For
  10. MSA-20-0004: Admin PHP unit webrunner tool requires additional input escaping
  11. MSA-20-0001: Stored XSS in message conversation overview
  12. MSA-19-0024: Assigned Role in Cohort did not un-assign on removal
  13. MSA-19-0025: Add additional verification for some OAuth 2 logins to prevent account compromise
  14. MSA-19-0026: Blind XSS reflected in some locations where user email is displayed
  15. MSA-19-0027: Open redirect in Lesson edit page
  16. MSA-19-0028: Email media URL tokens were not checking for user status
  17. MSA-19-0029: Reflected XSS possible from some fatal error messages
  18. Re: MSA-19-0019: Course creation did not check the creator's role assignment capability before automatically assigning them as a teacher in the course
  19. MSA-19-0018: JavaScript injection possible in some Mustache templates via recursive rendering from contexts
  20. MSA-19-0019: Course creation did not check the creator's role assignment capability before automatically assigning them as a teacher in the course

Página 3 de 58

  • Inicio
  • Anterior
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • Siguiente
  • Final
  • Home
  • Blog
  • Noticias
  • Todas las Noticias

Moodle-Chile.cl is not affiliated with or endorsed by the Moodle Project.

Powered by TILATAM S.A.