Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-46858

Moodle 4.3 allows /grade/report/grader/index.php?searchvalue= reflected XSS when logged in as a teacher. NOTE: the Moodle Security FAQ link states "Some forms of rich content [are] used by teachers to enhance their courses ... admins and teachers can post XSS-capable content, but students can not."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 29.9%
CVSS Severity
CVSS v3 Score 5.4
Products affected by CVE-2023-46858
  • Moodle » Moodle » Version: 4.3.0
    cpe:2.3:a:moodle:moodle:4.3.0


Contact Us

Shodan ® - All rights reserved