CVE-2016-2157
Published May 22, 2016
Last updated 4 years ago
Overview
- Description
- Cross-site request forgery (CSRF) vulnerability in mod/assign/adminmanageplugins.php in Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 allows remote attackers to hijack the authentication of administrators for requests that manage Assignment plugins.
- Source
- secalert@redhat.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.0
- Type
- Primary
- Base score
- 8.8
- Impact score
- 5.9
- Exploitability score
- 2.8
- Vector string
- CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 6.8
- Impact score
- 6.4
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-352
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9F3E36CA-026A-4262-8CB7-73E0FC315A45", "versionEndIncluding": "2.6.11" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E051AAC-EB40-491F-AF0E-EE8143C12567" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FADBE87F-1855-453B-B958-0CB8A7908A06" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1B53A7D2-BDA2-4185-97C3-977A04876A37" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A51DFFA8-DFF0-429C-B697-F82F41621FEE" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "19FD1565-0DA1-4BA8-A501-86F13D3D29ED" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6D82CFE8-C38D-4FF3-BC4F-6C27AD64D9A3" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FEB754AF-3DA4-4459-A53B-3BC7B78CE313" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F57E8383-C3F3-480C-B9A9-49633DAAEC18" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "645E8B7B-1AE6-4F46-AFA9-7506685CD571" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0316A26A-8B51-4226-8D56-4A798A2D798D" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DF5A44BF-A70E-4AEF-9A3C-E03809744AB3" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5E3F7DEF-1A66-43CB-BE45-EC609D60D76E" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.7.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DD39692F-BC98-4AE3-B31A-4592D3212F4E" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "12737AF4-B2D5-4661-B06A-6A06FE95EC2D" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "88C59A94-D225-478A-B23E-41C4324BC643" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "192EA69B-A1E1-4E0D-8E73-76EB74CCDE49" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D88385B1-EEFB-4825-BD8F-215C39FD86DA" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A3BE2782-D167-4237-B57D-2E4C04571524" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F277F979-12FA-47A5-B0A5-D174C2127A7D" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "38498617-8E45-4E73-AE9F-C7A0D18FDE47" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C9047769-BFF4-42DB-8B19-F6D16FA910A1" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "73A75ACE-FED2-4830-B259-744ABF25463E" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F04EBA18-DFFF-4529-B647-98191325663B" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A3A746AB-5D58-4196-962A-D22454C3550B" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.9.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C9224D94-1C48-468C-A39B-B2694ED178F4" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.9.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1C7EE9AD-E122-4288-9416-6D8F8790D75D" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C4FC2CC1-787B-480F-BC41-538CE2507CB7" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "098BADF2-C1D3-406E-9E79-E25483178C99" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "611B027A-38D6-445E-BFA9-FA68524147DB" }, { "criteria": "cpe:2.3:a:moodle:moodle:3.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8C22EB95-6D8F-45F8-A000-795E259CF06D" }, { "criteria": "cpe:2.3:a:moodle:moodle:3.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65FE0DC7-131E-4ED1-9CFF-70C79995A0B9" }, { "criteria": "cpe:2.3:a:moodle:moodle:3.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "80B3EEF9-F300-461F-9407-0FFB3E3CD421" } ], "operator": "OR" } ] } ]