CVE-2020-1755
5.3MEDIUMIn Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, X-Forwarded-For headers could be used to spoof a user's IP, in order to bypass remote address checks.
Veröffentlicht: 8/16/2022Aktualisiert: 11/21/2024
Beschreibung
In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, X-Forwarded-For headers could be used to spoof a user's IP, in order to bypass remote address checks.
KI-AnalyseKI-gestützt
Betroffene Produkte
moodlemoodle
moodlemoodle
moodlemoodle
moodlemoodle
Referenzen
- https://moodle.org/mod/forum/discuss.php?d=398351PatchVendor Advisory
- https://moodle.org/mod/forum/discuss.php?d=398351PatchVendor Advisory