CVE-2018-1042

CVE-2018-1042: vulnerability in Moodle 3.x

Published · Updated

28Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 17%
from disclosure to weapon550 days
Published on NVDJan 22
1st PoC+550d
exploitation probability
17%top 3% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
Moodle 3.x has Server Side Request Forgery in the filepicker.
Affected products
n/a · Moodle 3.x
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.