CVE-2023-5546
ID numbers displayed in the quiz grading report required additional sanitizing to prevent a stored XSS risk.
- Affected products
- Moodle, Ckeditor4, Enterprise Linux, Fedora, Moodle/Moodle, Upx, Wireshark
- Moodle
- < 4.0.11, 4.1.6, 4.2.3
- CVSS 3.1
- 5.4 MEDIUM
- EPSS
- 1.2% (65th percentile)
- Weakness
- CWE-79
- NVD status
- Modified
- Published
- 2023-11-09
CVE-2023-5546 at NVD
1 known exploit for CVE-2023-5546
Proof-of-concept code and exploit modules indexed by Sploitus