CVE-2008-5432: XSS
Cross-site scripting (XSS) vulnerability in Moodle before 1.6.8, 1.7 before 1.7.6, 1.8 before 1.8.7, and 1.9 before 1.9.3 allows remote attackers to inject arbitrary web script or HTML via a Wiki page name (aka page title).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5432?
CVE-2008-5432 has a medium severity rating due to its potential for cross-site scripting attacks.
How do I fix CVE-2008-5432?
To fix CVE-2008-5432, upgrade your Moodle installation to version 1.6.8, 1.7.6, 1.8.7, or 1.9.3 or later.
What systems are affected by CVE-2008-5432?
CVE-2008-5432 affects multiple Moodle versions prior to 1.6.8, 1.7.6, 1.8.7, and 1.9.3.
What type of vulnerability is CVE-2008-5432?
CVE-2008-5432 is a cross-site scripting (XSS) vulnerability that allows remote attackers to inject arbitrary web scripts or HTML.
Can CVE-2008-5432 lead to data breaches?
Yes, CVE-2008-5432 could potentially allow attackers to execute malicious scripts, leading to data breaches or unauthorized actions.