vulnerability
Moodle: (CVE-2017-7489): MSA-17-0010: External blog editing takeover
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:N/AC:L/Au:S/C:P/I:P/A:P) | May 15, 2017 | Sep 19, 2017 | Jan 12, 2023 |
Severity
7
CVSS
(AV:N/AC:L/Au:S/C:P/I:P/A:P)
Published
May 15, 2017
Added
Sep 19, 2017
Modified
Jan 12, 2023
Description
In Moodle 2.x and 3.x, remote authenticated users can take ownership of arbitrary blogs by editing an external blog link.
Solution
moodle-upgrade-latest
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.