CVE-2021-36393
In Moodle, an SQL injection risk was identified in the library fetching a user's recent courses.
- Moodle
- < 3.9.8, 3.10.5, 3.11.1
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 52.3% (99th percentile)
- Weakness
- CWE-89
- NVD status
- Modified
- Published
- 2023-03-06
CVE-2021-36393 at NVD
8 known exploits for CVE-2021-36393
Proof-of-concept code and exploit modules indexed by Sploitus
CVE-2021-36396-Moodle-Time-Based-SQLi-Exploit
CVE-2021-36393
Moodle 3.10.1 SQL Injection
Moodle 3.10.1 - Authenticated Blind Time-Based SQL Injection - (sort) parameter Exploit
Moodle 3.10.1 - Authenticated Blind Time-Based SQL Injection - _sort_ parameter
Exploit for SQL Injection in Moodle
Exploit for Server-Side Request Forgery in Moodle
Exploit for SQL Injection in Moodle