CVE-2009-4305
Published Dec 16, 2009
Last updated 4 years ago
Overview
- Description
- SQL injection vulnerability in the SCORM module in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 allows remote authenticated users to execute arbitrary SQL commands via vectors related to an "escaping issue when processing AICC CRS file (Course_Title)."
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.5
- Impact score
- 6.4
- Exploitability score
- 8
- Vector string
- AV:N/AC:L/Au:S/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-89
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:moodle:moodle:1.8.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "492A28FE-A2F8-4FF7-AC5B-0C3F5508506D" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.8.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "28A897CA-3D8F-4575-BBD2-1C0C5A2ECC99" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.8.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A4A3A5D9-D96E-46B3-AC22-25045564EB96" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.8.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AF91F8EA-1737-4E11-9931-ACAFB4BC0018" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.8.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1E81E148-5710-439C-8A1A-884D27640AAD" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.8.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DE2C0217-A25A-4D0A-8CC6-64DEBC9E198F" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.8.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7949FC50-81B9-44AD-BB1B-91D025B34FF6" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.8.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "83AA5D08-CF62-45A8-A8FE-18F76BA8ECA5" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.8.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2C61F076-71AC-4AEF-BECF-9EF0B05CEB77" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.9.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "24F2602B-8ED3-4026-A9A4-31BE8BDC7724" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D7F24649-B67F-4809-9F54-7B623AEF5A4A" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6B81655E-C3B5-4115-A4C4-B7AC2FCDAB7F" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ED9C3840-66BE-47EC-9F0C-E9D2171FF0B2" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.9.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DBD062EB-1B1F-4DC8-A4F9-C2EC7D401E9D" }, { "criteria": "cpe:2.3:a:moodle:moodle:1.9.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "291F73E9-1059-4E7F-860F-0DF2A35AA456" } ], "operator": "OR" } ] } ]