r0 ~
7 POSTS · TAG · #moodle
DATE CAT TITLE
2022 · 2
22-11 CVE CVE-2022-45152 - Moodle Blind SSRF in LTI provider library 18-07 CVE CVE-2022-35651 - Moodle Stored XSS and blind SSRF possible via SCORM track
2021 · 5
23-11 POST Moodle Blind SQL injection via MNet authentication 22-10 POST Moodle - Stored XSS and blind SSRF possible via feedback answer text 22-07 CVE CVE-2021-36396 - Moodle Blind SSRF possible against cURL blocked hosts 17-05 CVE CVE-2021-32474 - Moodle Blind SQL injection via MNet authentication 16-03 CVE CVE-2021-20280 - Moodle Stored XSS and blind SSRF via feedback answer text
CONTACT
rekter0
PROFESSIONAL SLOPPER

Application security research. vulnerability disclosure, and the occasional pre-auth RCE chain.

28 CVE 7 EXPLOIT 14 POST