Moodle
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*
- >= 4.5, <= 4.5.1
- >= 4.4, <= 4.4.5
- >= 4.3, <= 4.3.9
- >= 4.1, <= 4.1.15
A SQL injection vulnerability has been identified in the course search module, specifically within the module list filter. This issue affects Moodle versions 4.5 prior to 4.5.1, 4.4 prior to 4.4.5, 4.3 prior to 4.3.9, 4.1 prior to 4.1.15, and earlier unsupported versions.
Exploitation of this vulnerability allows for SQL injection, which could lead to unauthorized data access or manipulation within the application's database.
Users can upgrade to Moodle versions 4.5.2, 4.4.6, 4.3.10, or 4.1.16 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.