CVE-2024-38275
7.5HIGHThe cURL wrapper in Moodle retained the original request headers when following redirects, so HTTP authorization header information could be unintentionally sent in requests to redirect URLs.
게시됨: 6/18/2024업데이트됨: 4/30/2025
설명
The cURL wrapper in Moodle retained the original request headers when following redirects, so HTTP authorization header information could be unintentionally sent in requests to redirect URLs.
AI 분석AI 기반
영향받는 제품
moodlemoodle
moodlemoodle
moodlemoodle
moodlemoodle
4.4.0
참조
- https://moodle.org/mod/forum/discuss.php?d=459500Vendor Advisory
- https://moodle.org/mod/forum/discuss.php?d=459500Vendor Advisory