Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2013-2079

EPSS 0.36% · P58
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2013-2079

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
mod/assign/locallib.php in the assignment module in Moodle 2.3.x before 2.3.7 and 2.4.x before 2.4.4 does not consider capability requirements during the processing of ZIP assignment-archive download (aka downloadall) requests, which allows remote authenticated users to read other users' assignments by leveraging the student role.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Moodle 安全绕过漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Moodle是澳大利亚马丁-多基马(Martin Dougiamas)博士开发的一套免费、开源的电子学习软件平台,也称课程管理系统、学习管理系统或虚拟学习环境。 Moodle 2.3.7之前的2.3.x版本,2.4.4之前的2.4.x版本中的任务模块中的mod/assign/locallib.php中存在漏洞,该漏洞源于程序在处理ZIP任务存档下载(又名downloadall)请求时,没有考虑能力的要求。远程经过授权的用户可通过学生角色利用该漏洞读取其他用户的任务。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2013-2079

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2013-2079

Please Login to view more intelligence information

Same Patch Batch · n/a · 2013-05-25 · 13 CVEs total

CVE-2013-2080Moodle ‘Gradebook’信息泄露漏洞
CVE-2013-2081Moodle 信息泄露漏洞
CVE-2013-2082Moodle 多个安全绕过漏洞
CVE-2013-2083Moodle Form Elements Filtering 安全漏洞
CVE-2013-3555Wireshark GTPv2解析器拒绝服务漏洞
CVE-2013-3556Wireshark ASN.1 BER解析器‘fragment_add_seq_common’函数拒绝服务漏洞
CVE-2013-3557Wireshark ASN.1 BER解析器‘dissect_ber_choice’函数拒绝服务漏洞
CVE-2013-3558Wireshark PPP CCP解析器‘dissect_ccp_bsdcomp_opt’函数拒绝服务漏洞
CVE-2013-3559Wireshark DCP ETSI Dissector 整数溢出拒绝服务漏洞
CVE-2013-3560Wireshark MPEG DSM-CC解析器‘dissect_dsmcc_un_download’函数拒绝服务漏洞
CVE-2013-3561Wireshark 多个整数溢出漏洞
CVE-2013-3562Wireshark Websocket解析器‘tvb_unmasked’函数多个整数符号错误漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2013-2079

No comments yet


Leave a comment