Sploitus

CVE-2015-7712

2 known exploits for CVE-2015-7712

Multiple eval injection vulnerabilities in mods/_standard/gradebook/edit_marks.php in ATutor 2.2 and earlier allow remote authenticated users with the AT_PRIV_GRADEBOOK privilege to execute arbitrary PHP code via the (1) asc or (2) desc parameter.

Affected products
Atutor
Atutor
≤ 2.2
CVSS 2.0
6.5 MEDIUM
EPSS
2.1% (79th percentile)
NVD status
Modified
Published
2015-11-16
CVE-2015-7712 at NVD
Authoritative description, scoring and affected products

2 known exploits for CVE-2015-7712

Proof-of-concept code and exploit modules indexed by Sploitus