First published: Thu Jun 20 2024(Updated: )
Cross Site Scripting vulnerability in Moodle CMS v3.10 allows a remote attacker to execute arbitrary code via the Field Name (name parameter) of a new activity.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Moodle |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-37674 is classified as a high-severity Cross Site Scripting vulnerability.
To fix CVE-2024-37674, update your Moodle CMS to the latest version that addresses this vulnerability.
CVE-2024-37674 specifically affects Moodle CMS version 3.10.
CVE-2024-37674 is a Cross Site Scripting (XSS) vulnerability.
If exploited, CVE-2024-37674 could allow an attacker to execute arbitrary code on the affected Moodle instance.