Korean
<< Back
VID 21642
Severity 40
Port 80, ...
Protocol TCP
Class CGI
Detailed Description A version of Moodle software which is older than 1.5.1 is detected as installed on the host. Moodle is an open-source PHP-based course management system (CMS) for Microsoft Windows, Unix, and Linux-based platforms. Moodle versions prior to 1.5.1 are vulnerable to multiple unspecified security flaws. These flaws could allow a malicious user to compromise the application.

* Note: This check solely relied on the version number of the Moodle software installed on the remote Web server to assess this vulnerability, so this might be a false positive.

* References:
http://moodle.org/doc/index.php?file=release.html

* Platforms Affected:
Martin Dougiamas, Moodle prior to 1.5.1
Any operating system Any version
Recommendation Upgrade to the latest version of Moodle (1.5.1 or later), available from the Moodle Web site at http://www.moodle.org
Related URL CVE-2005-2247 (CVE)
Related URL 14224 (SecurityFocus)
Related URL (ISS)