CVE-2020-1755
5.3MEDIUMIn Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, X-Forwarded-For headers could be used to spoof a user's IP, in order to bypass remote address checks.
Published: 8/16/2022Updated: 11/21/2024
Description
In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, X-Forwarded-For headers could be used to spoof a user's IP, in order to bypass remote address checks.
AI AnalysisPowered by AI
Affected Products
moodlemoodle
moodlemoodle
moodlemoodle
moodlemoodle
References
- https://moodle.org/mod/forum/discuss.php?d=398351PatchVendor Advisory
- https://moodle.org/mod/forum/discuss.php?d=398351PatchVendor Advisory