Product:

Extra_packages_for_enterprise_linux

(Fedoraproject)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 76
Date Id Summary Products Score Patch Annotated
2023-11-09 CVE-2023-5543 When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting. Extra_packages_for_enterprise_linux, Fedora, Moodle 3.3
2023-11-09 CVE-2023-5550 In a shared hosting environment that has been misconfigured to allow access to other users' content, a Moodle user who also has direct access to the web server outside of the Moodle webroot could utilise a local file include to achieve remote code execution. Extra_packages_for_enterprise_linux, Fedora, Moodle 9.8
2023-11-09 CVE-2023-5551 Separate Groups mode restrictions were not honoured in the forum summary report, which would display users from other groups. Extra_packages_for_enterprise_linux, Fedora, Moodle 3.3
2023-11-09 CVE-2023-5539 A remote code execution risk was identified in the Lesson activity. By default this was only available to teachers and managers. Extra_packages_for_enterprise_linux, Fedora, Moodle 8.8
2023-11-09 CVE-2023-5540 A remote code execution risk was identified in the IMSCP activity. By default this was only available to teachers and managers. Extra_packages_for_enterprise_linux, Fedora, Moodle 8.8
2023-11-09 CVE-2023-5542 Students in "Only see own membership" groups could see other students in the group, which should be hidden. Extra_packages_for_enterprise_linux, Fedora, Moodle 4.3
2023-11-09 CVE-2023-5548 Stronger revision number limitations were required on file serving endpoints to improve cache poisoning protection. Extra_packages_for_enterprise_linux, Fedora, Moodle 5.3
2023-11-09 CVE-2023-5549 Insufficient web service capability checks made it possible to move categories a user had permission to manage, to a parent category they did not have the capability to manage. Extra_packages_for_enterprise_linux, Fedora, Moodle 5.3
2022-12-09 CVE-2022-4170 The rxvt-unicode package is vulnerable to a remote code execution, in the Perl background extension, when an attacker can control the data written to the user's terminal and certain options are set. Extra_packages_for_enterprise_linux, Fedora, Rxvt\-Unicode 9.8
2020-01-16 CVE-2020-7106 Cacti 1.2.8 has stored XSS in data_sources.php, color_templates_item.php, graphs.php, graph_items.php, lib/api_automation.php, user_admin.php, and user_group_admin.php, as demonstrated by the description parameter in data_sources.php (a raw string from the database that is displayed by $header to trigger the XSS). Cacti, Debian_linux, Extra_packages_for_enterprise_linux, Fedora, Backports_sle, Leap, Package_hub 6.1